HackerCalico / SigLocator
Efficient RAT signature locator for bypassing AV/EDR, supporting static scanning and memory scanning.
☆16Updated last month
Related projects ⓘ
Alternatives and complementary repositories for SigLocator
- Binary Hollowing☆56Updated 2 months ago
- Magical obfuscator, supports obfuscating EXE, BOF, and ShellCode.☆83Updated this week
- Red team tool designed for quickly identifying hijackable programs, evading antivirus software, and EDR (Endpoint Detection and Response)…☆60Updated 6 months ago
- 免杀计划任务进行权限维持,过主流杀软。 A schtask tool bypass anti-virus☆66Updated 2 years ago
- more conveniently Visual-Studio-BOF-template☆53Updated last year
- Shellcode Reductio Entropy Tools☆63Updated last year
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆30Updated 2 years ago
- vehsyscall:a syscall project that may bypass EDR☆46Updated 8 months ago
- ☆49Updated last year
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆34Updated 6 months ago
- C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can…☆17Updated 3 years ago
- Self Cleanup in post-ex job☆44Updated 2 months ago
- Cobalt Strike BOF that Add a user to localgroup by samr☆123Updated last year
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆110Updated 5 months ago
- ☆22Updated last year
- 一个2020年练手的基于gin框架搞的在线免杀平台,支持后台管理,邀请码注册等☆34Updated 2 months ago
- This is a third party agent for Havoc C2 written in golang.☆56Updated 10 months ago
- 一个demo☆23Updated 7 months ago
- 使用 rust 实现 CobaltStrike 的 beacon || Using Rust to implement CobaltStrike's Beacon☆89Updated 2 weeks ago
- beta☆111Updated 2 months ago
- Invoke-Obfuscation-Bypass + PS2EXE 过主流杀软☆52Updated 3 years ago
- command execute without 445 port☆51Updated 2 years ago
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆67Updated last year
- ☆89Updated 3 years ago
- 利用EFSRPC协议批量探测出网☆65Updated last year
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆40Updated last year
- Bypass EDR Create TaskServers☆34Updated last year
- AddDefenderExclusions Beacon Object File☆31Updated last year
- Silently Install Chrome Extension For Persistence☆43Updated 4 months ago
- ☆29Updated last year