0xlane / com-process-inject
Process Injection via Component Object Model (COM) IRundown::DoCallback().
☆56Updated 2 years ago
Alternatives and similar repositories for com-process-inject:
Users that are interested in com-process-inject are comparing it to the libraries listed below
- ProcessGhosting 技术 的 rust 实现版本☆24Updated 3 months ago
- IDA Python script for generating Windows x86 shellcode with one click☆35Updated last year
- 整合Pluto-Obfuscator和goron部分混淆,移植到LLVM-16.0.x,使用NewPassManager☆118Updated last year
- Walks the CFG bitmap to find previously executable but currently hidden shellcode regions☆109Updated last year
- Call NtCreateUserProcess directly as normal.☆68Updated 2 years ago
- https://key08.com/index.php/2021/10/19/1375.html☆65Updated 2 years ago
- 简单安排一下 autochk.sys 这个rootkit☆71Updated last year
- Kill Protected Process Light Process (include av)☆55Updated last year
- Windows API Call Obfuscation☆99Updated 2 years ago
- shellcode-loaders and beacon-loaders☆64Updated last year
- An implementation of an indirect system call☆119Updated last year
- Windows Defender VDM lua collections☆47Updated 2 years ago
- Windows Kernel Knowledge && Collect Resources on the wire && Nothing innovation by myself &&☆54Updated last month
- sc4cpp is a shellcode framework based on C++☆88Updated 3 years ago
- 大数字驱动逆向代码☆71Updated last year
- Heaven's Gate implementation in C for constructing x64 Win32 API call in x86 WoW64 processes.☆68Updated 3 years ago
- shellcode生成框架☆85Updated 6 months ago
- Uses Threat-Intelligence ETW events to identify shellcode regions being hidden by fluctuating memory protections☆111Updated last year
- Load static-compiled PE from remote server.☆59Updated 3 years ago
- 利用物理内存映射,实现虚拟内存的伪隐藏☆81Updated 2 years ago
- ☆191Updated 2 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆103Updated 2 years ago
- bring your own vulnerable driver☆89Updated last year
- Finding Truth in the Shadows☆88Updated 2 years ago
- Ida pro plugin. The antiVM aims to quickly identify anti-virtual machine and anti-sandbox behavior. This can speed up malware analysis.☆38Updated 2 years ago
- out-of-tree llvm obfuscation pass plugin (dynamically loadable by rustc). || rust toolchain with obfuscation llvm pass.☆102Updated 7 months ago
- DLL 转发工具方法。☆50Updated last year
- Beacon compiled using clang☆63Updated 2 years ago
- ☆23Updated 2 years ago
- windwos内核研究与驱动Code☆61Updated 3 years ago