DarkCoderSc / pe-code-cave-helperLinks
PE File Code Cave Helper (Backdooring and/or Basic Section Obfuscation)
☆21Updated 4 years ago
Alternatives and similar repositories for pe-code-cave-helper
Users that are interested in pe-code-cave-helper are comparing it to the libraries listed below
Sorting:
- Shellcodev is a tool designed to help and automate the process of shellcode creation.☆111Updated 2 years ago
- Read Memory without ReadProcessMemory for Current Process☆89Updated 3 years ago
- Simple x86 Trampoline Hook☆42Updated 3 years ago
- Scan for potentially vulnerable drivers☆91Updated 3 years ago
- ZwProcessHollowing is a x64 process hollowing project which uses direct systemcalls, dll unhooking and RC4 payload decryption☆89Updated 2 years ago
- Small PoC of using a Microsoft signed executable as a lolbin.☆138Updated 2 years ago
- Overwrite MBR and add own custom message☆16Updated 5 years ago
- Injects position-dependent code into a code cave in an executable file, and applies relocations.☆23Updated 2 years ago
- Simple API Hooks detector☆74Updated 3 years ago
- Listing UDP connections with remote address without sniffing.☆28Updated 2 years ago
- Herpaderply Hollowing - a PE injection technique, hybrid between Process Hollowing and Process Herpaderping☆64Updated 3 years ago
- UEFI bootkit: Hardware Implant. In-Progress☆16Updated 3 years ago
- using the gpu to hide your payload☆62Updated 3 years ago
- Reduce Dynamic Analysis Detection Rates With Built-In Unhooker, Anti Analysis Techniques, And String Obfuscator Modules.☆21Updated 2 years ago
- ☆40Updated 2 years ago
- ☆114Updated 3 years ago
- Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE☆66Updated 2 years ago
- A small tool I made to dump the export table of PE files. The primary use case was intended for use within DLL proxying.☆71Updated 3 years ago
- One Click Tool to Scan All the Enabled Protection of current Windows NT Kernel☆43Updated 2 years ago
- Next gen process injection technique☆54Updated 5 years ago
- Neutralize KEPServerEX anti-debugging techniques☆32Updated 2 years ago
- Tiny driver patch to allow kernel callbacks to work on Win10 21h1☆34Updated 3 years ago
- Crossplatform tool for inject shellcode into .exe and .dll binaries (x86 and x64)☆71Updated last year
- kernel to user mode APC injector☆44Updated 3 years ago
- Process Hollowing demonstration & explanation☆34Updated 4 years ago
- NT AUTHORITY\SYSTEM☆40Updated 5 years ago
- Detours implementation (x64/x86) which used only ntdll import☆89Updated last year
- This script is used to unload PsSetCreateProcessNotifyRoutineEx, PsSetCreateProcessNotifyRoutine, PsSetLoadImageNotifyRoutine and PsSetCr…☆62Updated last year
- improving zerosums smbdoor - a silent remote backdoor which abuses undoc. APIs in srvnet.sys☆50Updated 2 years ago
- API Hammering with C++20☆49Updated 3 years ago