H4K6 / FilelessPELoaderLinks
将PE文件进行AES加密,然后从远程拉取加载内存中实现免杀
☆37Updated 2 years ago
Alternatives and similar repositories for FilelessPELoader
Users that are interested in FilelessPELoader are comparing it to the libraries listed below
Sorting:
- CrackMapExec extension module/protocol support☆42Updated 2 years ago
- command execute without 445 port☆52Updated 3 years ago
- Cobalt Strike BOF that Add an admin user☆78Updated 3 years ago
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆78Updated 2 years ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆88Updated 2 years ago
- Shellcode Reductio Entropy Tools☆74Updated 2 years ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆55Updated 2 years ago
- ☆49Updated 2 years ago
- A Mimikatz For Only Extracting Login Passwords.(Bypasses Most AV's)☆59Updated 3 years ago
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆34Updated 5 months ago
- ASPX ShellCode Loader☆54Updated last year
- Cobalt Strike BOF that Add a user to localgroup by samr☆132Updated 3 years ago
- ☆31Updated 2 years ago
- ☆36Updated 2 years ago
- MSSQL CLR for pentest.☆56Updated 2 years ago
- ☆43Updated 2 years ago
- RPC 调用添加ssp扩展dump lsass☆23Updated 3 years ago
- This is a third party agent for Havoc C2 written in golang.☆57Updated last year
- Beacon Object File implementation of pwn1sher's KillDefender☆67Updated 3 years ago
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆34Updated 3 years ago
- ☆46Updated 4 years ago
- resource-based constrained delegation RBCD☆46Updated 3 years ago
- Asset scanning by dictionary stitching Domain to identify Exchange Servers versions☆45Updated 2 years ago
- CVE-2023-21707 EXP☆28Updated 2 years ago
- More EFS coerced authentication method with PetitPotam.py☆27Updated 2 years ago
- ☆15Updated 2 years ago
- ☆102Updated 3 years ago
- 在cobaltstrike中使用的bof工具集,收集整理验证好用的bof。☆16Updated 4 years ago
- 在权限足够的情况下弹出system权限的cmd命令行,包含exe和dll两种文件类型,可用于一些可能存在本地提权漏洞的测试。☆33Updated 3 years ago
- 一个2020年练手的基于gin框架搞的在线免杀平台,支持后台管理,邀请码注册等☆39Updated last year