EgeBalci / MapPELinks
PE file mapping and manipulation package.
☆36Updated 3 years ago
Alternatives and similar repositories for MapPE
Users that are interested in MapPE are comparing it to the libraries listed below
Sorting:
- Assembly block for hooking windows API functions.☆93Updated 6 years ago
- A better alternative to RunDLL32☆33Updated 6 years ago
- Some simple process injection techniques targeting the Windows platform☆31Updated 5 years ago
- Shellcode to load an appended Dll☆91Updated 5 years ago
- Assembly block for finding and calling the windows API functions inside import address table(IAT) of the running PE file.☆78Updated 2 years ago
- A kernel mode Windows rootkit in development.☆49Updated 3 years ago
- ☆46Updated 7 years ago
- A ready-made template for a project based on libpeconv.☆50Updated last month
- Fileless persistence, attacks and anti-forensic capabilties.☆94Updated 6 years ago
- Windows PE - TLS (Thread Local Storage) Injector in C/C++☆106Updated 4 years ago
- Hijack Printconfig.dll to execute shellcode☆99Updated 4 years ago
- Yet another Windows DLL injector.☆39Updated 4 years ago
- A quick tool for hiding a new process running shellcode.☆58Updated 5 years ago
- GUI Application in C# to run and disassemble shellcode☆36Updated 8 years ago
- This is a project to receive Base64 data and decode it in process☆15Updated 5 years ago
- Bypass UAC by abusing the Windows Defender Firewall Control Panel, environment variables, and shell protocol handlers☆18Updated 4 years ago
- C++ implementation of DOUBLEPULSAR usermode shellcode. Yet another Reflective DLL loader.☆31Updated 4 years ago
- Basic multi platform meterpreter loader module.☆16Updated 5 years ago
- Enumerate the DLLs/Modules using NtQueryVirtualMemory☆32Updated 10 years ago
- Weaponizing Gigabyte driver for priv escalation and bypass PPL☆69Updated 6 years ago
- CSharp Writeups for HackSys Extreme Vulnerable Driver☆44Updated 3 years ago
- ☆92Updated 4 years ago
- Windows Application Loader Running *.Exe files in Memory against Scrylla☆21Updated 5 years ago
- An example of how x64 kernel shellcode can dynamically find and use APIs☆104Updated 5 years ago
- An example of how to spawn a process with a spoofed parent PID (Visual C++)☆29Updated 6 years ago
- An example of PE hollowing injection technique☆25Updated 6 years ago
- Windows x64 Process Scanner to detect application compatability shims☆37Updated 7 years ago
- Files for http://deniable.org/windows/windows-callbacks☆26Updated 5 years ago
- a open source rat from china☆26Updated 9 years ago
- WORK IN PROGRESS. RAT written in C++ using Win32 API☆20Updated 6 years ago