H4K6 / FilelessPELoaderLinks
将PE文件进行AES加密,然后从远程拉取加载内存中实现免杀
☆37Updated 2 years ago
Alternatives and similar repositories for FilelessPELoader
Users that are interested in FilelessPELoader are comparing it to the libraries listed below
Sorting:
- Cobalt Strike BOF that Add an admin user☆78Updated 3 years ago
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆78Updated 2 years ago
- CrackMapExec extension module/protocol support☆43Updated 2 years ago
- command execute without 445 port☆57Updated 3 years ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆90Updated 2 years ago
- ASPX ShellCode Loader☆54Updated 2 years ago
- ☆31Updated 2 years ago
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆34Updated 6 months ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆55Updated 2 years ago
- Shellcode Reductio Entropy Tools☆74Updated 2 years ago
- More EFS coerced authentication method with PetitPotam.py☆27Updated 2 years ago
- ☆49Updated 2 years ago
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆34Updated 3 years ago
- ☆15Updated 2 years ago
- Beacon Object File implementation of pwn1sher's KillDefender☆67Updated 3 years ago
- Cobalt Strike BOF that Add a user to localgroup by samr☆132Updated 3 years ago
- MSSQL CLR for pentest.☆56Updated 2 years ago
- A Mimikatz For Only Extracting Login Passwords.(Bypasses Most AV's)☆59Updated 3 years ago
- Asset scanning by dictionary stitching Domain to identify Exchange Servers versions☆45Updated 2 years ago
- This is a third party agent for Havoc C2 written in golang.☆58Updated 2 years ago
- CVE-2023-21707 EXP☆28Updated 2 years ago
- RPC 调用添加ssp扩展dump lsass☆24Updated 3 years ago
- ☆44Updated 2 years ago
- dump lsass☆37Updated 3 years ago
- Enable RDP and set firewall by Windows API.☆21Updated 3 years ago
- ☆102Updated 3 years ago
- ☆46Updated 4 years ago
- ☆36Updated 2 years ago
- Get password/cookie/history from browser and use devtools protocol to bypass edr monitoring☆62Updated 9 months ago
- CobaltStrike Malleable Profile☆23Updated 3 years ago