evil-winrm
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: Provides example bash commands for running the
evil-winrmtool to connect to remote servers using basic auth, Pass-the-Hash (-H), and Kerberos tickets (-K). - [COMMAND_EXECUTION]: Documents specific network troubleshooting fallbacks involving auxiliary tools such as Impacket (
wmiexec.py/psexec.py) and Python'spypsrppackage.
Audit Metadata