A set of commands to bypass Defender (and some other AVs)
β20Jul 25, 2019Updated 6 years ago
Alternatives and similar repositories for SimpleMimikatzObfuscator
Users that are interested in SimpleMimikatzObfuscator are comparing it to the libraries listed below
Sorting:
- A curated list of Rust code and resources. With repository starsβ and forksπ΄β14Updated this week
- Mimikatz embedded as classesβ28Oct 25, 2021Updated 4 years ago
- A collection of my public YARA signatures for various malware familiesβ30Sep 20, 2024Updated last year
- Decoders for 7ev3n ransomwareβ17Oct 24, 2016Updated 9 years ago
- Scans a list of raccoon servers from Tria.ge and extracts the configβ15Jun 5, 2023Updated 2 years ago
- NimSkrull is an adaption from the original Skrull malware anti-copy DRM. Only for the anti-copy feature. (https://github.com/aaaddress1/Sβ¦β13May 20, 2023Updated 2 years ago
- β13Apr 6, 2016Updated 9 years ago
- Yara rules written by me, for free use.β20Nov 26, 2021Updated 4 years ago
- Remove API hooks from a Beacon process.β14Sep 18, 2021Updated 4 years ago
- Enumerate Callbacks and all Object Typesβ16Jan 9, 2023Updated 3 years ago
- POC of PPID spoofing using NtCreateUserProcess with syscalls to create a suspended process and performing process injection by overwrittiβ¦β41Sep 23, 2021Updated 4 years ago
- interesting analysisβ16May 14, 2018Updated 7 years ago
- Python3 script which decrypts files encrypted by flawed Cl0p ELF variant.β17Feb 6, 2023Updated 3 years ago
- β44Oct 16, 2023Updated 2 years ago
- Heap encryption in Nimβ20Aug 25, 2024Updated last year
- Command line tool to create an export defintion file from a dynamic link libraryβ27May 2, 2023Updated 2 years ago
- β23Oct 9, 2024Updated last year
- Debugger checks in 3 waysβ19Jan 25, 2018Updated 8 years ago
- Bruteforce with a stream of permutations of a specific patternβ26Aug 6, 2025Updated 6 months ago
- Manage Your Large Team of Consultantsβ11Sep 18, 2025Updated 5 months ago
- Utility functions for building Windows kernel drivers in Rustβ21Nov 16, 2021Updated 4 years ago
- Sleep obfuscation for shellcode implants and their reflective shitβ53Sep 19, 2023Updated 2 years ago
- rekk is set of tools written in Rust to obfuscate ELF & PE executables with nanomites.β32Dec 15, 2024Updated last year
- Yara rules for quick reverse engineering of malware.β19Dec 9, 2015Updated 10 years ago
- Network detector for Winnti malwareβ21Mar 6, 2018Updated 7 years ago
- β24Mar 4, 2019Updated 6 years ago
- A simple many-rules to many-files YARA scanner for incident response or malware zoos.β27Jun 3, 2018Updated 7 years ago
- Building and Executing Position Independent Shellcode from Object Files in Memoryβ167Jan 30, 2021Updated 5 years ago
- Python script to compress VBA macro filesβ24Feb 2, 2023Updated 3 years ago
- Modified python version of Rolf Rolles' https://github.com/RolfRolles/HexRaysDeob to unflatten Emotet'S Control Flow Flatteningβ27May 5, 2022Updated 3 years ago
- A tool that reads a PE file from a byte array buffer and injects it into memory.β28Aug 5, 2019Updated 6 years ago
- β28Dec 16, 2023Updated 2 years ago
- Improved version of EKKO by @5pider that Encrypts only Image Sectionsβ125Feb 13, 2023Updated 3 years ago
- β23May 19, 2019Updated 6 years ago
- Windows Process Injection Toolkit - plain and simple :)β28Jul 29, 2018Updated 7 years ago
- Basic packer using XOR encryptionβ31Mar 29, 2024Updated last year
- Rust implementation of phantom persistence technique documented in https://blog.phantomsec.tools/phantom-persistenceβ63Jun 23, 2025Updated 8 months ago
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.β28Apr 22, 2023Updated 2 years ago
- (First Public?) Sample of unhooking ntdll (All Exports & IAT imports) hooks in Rust using in-memory disassembly, avoiding direct syscallsβ¦β137Mar 3, 2025Updated 11 months ago