Kara-4search / WindowsEventLogsBypass_Csharp
Bypass windows eventlogs & Sysmon
☆15Updated 3 years ago
Alternatives and similar repositories for WindowsEventLogsBypass_Csharp:
Users that are interested in WindowsEventLogsBypass_Csharp are comparing it to the libraries listed below
- Command line & PPID spoofing☆26Updated last year
- A Simple ShellcodeLoader☆11Updated 3 years ago
- Using fibers to execute shellcode in a local process via csharp☆28Updated 3 years ago
- HookDetection☆44Updated 3 years ago
- MappingInjection via csharp☆37Updated 3 years ago
- Bypass AMSI☆14Updated 3 years ago
- ProcessHollowing via csharp☆12Updated 3 years ago
- A small PoC using DInvoke, dynamically mapping a DLL and executing Win32 APIs for process injection.☆10Updated 3 years ago
- (Hellsgate|Halosgate|Tartarosgate)+Spoofing-Gate. Ensures that all systemcalls go through ntdll.dll☆43Updated 2 years ago
- This project is created for research into antivirus evasion by unhooking.☆15Updated 3 years ago
- ☆18Updated 3 years ago
- Load PE via XML Attribute☆29Updated 4 years ago
- BOF/COFF obj file to PIC(shellcode). by golang☆37Updated 2 years ago
- Use powershell to getsystem with token dumplication☆10Updated 5 years ago
- Preventing 3rd Party DLLs from Injecting into your Malware☆25Updated 3 years ago
- Bypassing ETW with Csharp☆26Updated 3 years ago
- DLL Unhooking☆12Updated 3 years ago
- ☆50Updated 5 years ago
- ☆10Updated 4 years ago
- SharpDir is a simple code set to search both local and remote file systems for files and is compatible with Cobalt Strike.☆26Updated 5 years ago
- An attempt to make a LoadLibrary designed for offensive operations, in C# obviously.☆54Updated 2 years ago
- unhook etw by golang☆10Updated 3 years ago
- inject shellcode into remote process via message hook☆15Updated 4 years ago
- Windows 7/2008 R2 EoP☆13Updated 3 years ago
- Cobalt Strike Malleable Profile Inline Patch Template: A Position Independent Code (PIC) Code Template For Creating Shellcode That Can Be…☆38Updated 4 years ago
- A flexible tool that creates a minidump of the LSASS process☆12Updated 3 years ago
- Windows Persistence Collection☆12Updated 3 years ago
- CVE-2019-1040 with Kerberos delegation☆33Updated 3 years ago
- DPX - the Doge Packer for eXecutables☆27Updated 3 years ago
- Loader that loads shellcode from UUID's☆22Updated 3 years ago