{"repo":"chainski/PandaCrypter","free":true,"listed":false,"github":"https://github.com/chainski/PandaCrypter","clone":"git clone https://github.com/chainski/PandaCrypter.git","description":"PandaCrypter is a C#-based tool designed to convert PowerShell scripts into obfuscated batch files (.bat) with encryption and additional features for execution control.","language":"C#","stars":53,"topics":["aes","amsi","antivm","bat","batch","crypter","entropy","obfuscation","payload","persistence"],"license":"GPL-3.0","category":"security-tools","readme_excerpt":"PandaCrypter PandaCrypter is a C#-based tool designed to convert PowerShell scripts into obfuscated batch files (.bat) with encryption and additional features for execution control. Features - [x] AES Encryption: Encrypts the PowerShell payload. - [x] Anti-VM: Optionally evades virtualized environments. - [x] Compression: Compresses the payload to reduce size before encryption. - [x] Obfuscation: Obfuscates the generated batch file and powershel execution chain. - [x] AMSI Bypass: Optionally includes an AMSI (Antimalware Scan Interface) bypass to avoid detection. - [x] Run as Administrator: Supports elevating privileges by prompting for admin rights using Abuse Elevation Control Mechanism Force Admin. - [x] Self-Deletion: Optionally self-destructs after execution. - [x] Persistence: Optionally registers the batch file to run at user logon via scheduled tasks. - [x] Windows Defender Exclusion: Can add an exclusion path to Windows Defender (requires admin privileges). - [x] Execution Delay: Supports adding a delay before script execution. - [x] Low Entropy Packing: Contains colon padding to reduce entropy - [x] EventLog Cleanup: Removes Powershell logs to reduce footprint (requires admin privileges). Tested with Red-Team Tools - [x] Hoaxshell Options How It Works PandaCrypter processes a PowerShell script through several stages to produce an obfuscated batch file: - Input Reading: Reads the input PowerShell script (.ps1) as text. - Compression: Compresses the script using GZip ","default_branch":null,"files":null,"tree":[],"storefront":"/r/chainski","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/chainski/PandaCrypter/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}