AdiMarianMutu / MSHTA-VBS-download-and-executeLinks
Downloads, decode, decrypt and executes a VBScript using cmd and mshta
☆18Updated 5 years ago
Alternatives and similar repositories for MSHTA-VBS-download-and-execute
Users that are interested in MSHTA-VBS-download-and-execute are comparing it to the libraries listed below
Sorting:
- Disable Windows Defender Silently (ByPass TamperProtection & ByPass Trustednstaller)☆36Updated 5 years ago
- A custom run space to bypass AMSI and Constrained Language mode in PowerShell.☆20Updated 2 years ago
- Loader and RunPE file executer☆18Updated 6 years ago
- Generate a ms batch file and inject a files inside of it. When the batch is executed, the files are extracted and executed.☆22Updated 6 years ago
- Load PE via XML Attribute☆32Updated 5 years ago
- Collection of shellcode injection and execution techniques☆18Updated 2 months ago
- Create a C++ PE which loads an XTEA-crypted .NET PE shellcode in memory.☆17Updated 7 years ago
- C# Codedom example / builder☆24Updated 5 years ago
- The evolution of NxRansomware☆11Updated 6 years ago
- A PoC to demo modifying cmdline of the child process dynamically. It might be useful against process log tracing, AV or EDR.☆40Updated 4 years ago
- Download a .NET payload and run it on memory☆71Updated 6 years ago
- DarkRats Standalone HVNC☆24Updated 3 years ago
- Hide .Net assembly into png images☆36Updated 6 years ago
- Reflective DLL that hooks the creation of the UAC prompt popped by explorer.exe for privilege escalation.☆21Updated 4 years ago
- An example pattern in C# for using WMI to monitor process creation and termination events.☆53Updated 7 years ago
- Runpe + DInvoke + Syscall☆16Updated 4 years ago
- CVE-2019-1064 Local Privilege Escalation Vulnerability☆11Updated 6 years ago
- Bypass AMSI☆14Updated 4 years ago
- Video files for eBook: "Bypassing AVs by C#.NET Programming"☆40Updated 2 years ago
- Remote Administration Tool, Server Written in C# and Client Written in C++☆14Updated 2 years ago
- Unhooks Bit Defender from NTDLL and KERNELBASE using a classic technique.☆56Updated 2 years ago
- Execute .Net assemblies using Rundll32.exe☆113Updated 4 years ago
- Disabling Windows Defender & downloading payload☆21Updated 5 years ago
- A proof of concept of real custom GetProcAddress and GetModuleBaseAddress☆20Updated 3 years ago
- This script make any windows compatible with RDP connection☆21Updated 3 months ago
- Hide code from dnSpy and other C# spying tools☆42Updated 5 years ago
- WORK IN PROGRESS. RAT written in C++ using Win32 API☆20Updated 6 years ago
- Windows Antivirus Evasion and Memory Injection☆12Updated 3 years ago
- Download and loader .NET payload☆37Updated 6 years ago
- Bypass AMSI and Executing PowerShell scripts from C# - using CyberArk's method to bypass AMSI☆31Updated 5 years ago