DanusMinimus / API-HashLinks
API hashing written in C to load APIs indirectly using CRC32 hashing
☆14Updated 5 years ago
Alternatives and similar repositories for API-Hash
Users that are interested in API-Hash are comparing it to the libraries listed below
Sorting:
- ☆11Updated 6 years ago
- ☆24Updated 4 years ago
- Create a C++ PE which loads an XTEA-crypted .NET PE shellcode in memory.☆16Updated 7 years ago
- ☆22Updated 4 years ago
- Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.☆23Updated 4 years ago
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆52Updated 6 years ago
- ☆36Updated 3 years ago
- ☆34Updated 8 years ago
- A small commented POC for removing API hooks placed by AV/EDR.☆34Updated 5 years ago
- ☆16Updated 4 years ago
- A tool to create COM class/interface relationships in neo4j☆50Updated 2 years ago
- ☆31Updated 5 years ago
- ☆15Updated 2 years ago
- C# code to run PIC using CreateThread☆17Updated 6 years ago
- Windows GPU rootkit PoC by Team Jellyfish☆37Updated 10 years ago
- My experience using Windows API for offensive purposes☆17Updated 4 years ago
- Loads .NET Assembly Via CLR Loader☆16Updated 6 years ago
- PoC code from blog☆16Updated 5 years ago
- Tool to manage user privileges☆30Updated 6 years ago
- ☆37Updated 6 years ago
- Code for blog written at 0xdarkvortex.dev Red Team TTPs Part 2☆18Updated 5 years ago
- Antivirus Emulator Fingerprints☆29Updated 6 years ago
- ☆48Updated 4 years ago
- Ransoblin (Ransomware Bokoblin)☆18Updated 5 years ago
- Uses WMI Event Win32_ModuleLoadTrace to monitor module loading. Provides filters, and detailed data. Has an option to monitor for CLR Inj…☆42Updated 6 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆22Updated 7 years ago
- NimSkrull is an adaption from the original Skrull malware anti-copy DRM. Only for the anti-copy feature. (https://github.com/aaaddress1/S…☆12Updated 2 years ago
- Another Portable Executable files analysing stuff☆21Updated 14 years ago
- Resolve syscall numbers at runtime for all Windows versions.☆61Updated 10 months ago
- Just another casual shellcode native loader☆24Updated 3 years ago