KingKDot / ExorcismLinks
The first open source runtime windows batch and command line deobfuscator
☆42Updated 5 months ago
Alternatives and similar repositories for Exorcism
Users that are interested in Exorcism are comparing it to the libraries listed below
Sorting:
- ☆52Updated last year
- PoC for popping a system shell against the LnvMSRIO.sys driver☆117Updated 3 months ago
- Advanced dynamic malware analysis tool.☆82Updated 2 years ago
- Troll TaskManager, and play with it .☆30Updated 5 months ago
- simple user-mode Rootkit☆108Updated 3 years ago
- A simple commandline application to automatically decrypt strings from Obfuscator protected binaries☆47Updated last year
- SysCaller: SDK for WindowsAPI via syscalls. Dynamic Resolution, Obfuscation, Multi-Language Bindings, & more!☆51Updated 2 months ago
- A unique introduction to native runtime obfuscation.☆74Updated 11 months ago
- kernel-mode DLL Injector☆125Updated 9 months ago
- ☆12Updated last year
- Unpacker and Config Extractor for managed Redline Stealer payloads☆41Updated 2 years ago
- "Service-less" driver loading☆166Updated last year
- Collection of source code for Polymorphic, Metamorphic, and Permutation Engines used in Malware☆30Updated 6 years ago
- Evade behavioral analysis by executing malicious code within trusted Microsoft call stacks, patchless hooking library IAT/EAT.☆129Updated last month
- Safely manage the unloading of DLLs that have been hooked into a process. Context: https://github.com/KNSoft/KNSoft.SlimDetours/discussio…☆81Updated 7 months ago
- A 64 bit executable junk code engine for polymorphic malware.☆75Updated 7 months ago
- ☆42Updated last year
- Nim process hollowing loader☆62Updated 6 months ago
- Stealthy x64 thread manipulation library for calling functions inside target processes without creating remote threads or installing hook…☆59Updated 3 months ago
- A Bumblebee-inspired Crypter☆79Updated 3 years ago
- Evilbytecode-Gate resolves Windows System Service Numbers (SSNs) using two methods: analyzing the Guard CF Table in ntdll.dll and parsing…☆26Updated 9 months ago
- Bypasses AMSI protection through remote memory patching and parsing technique.☆54Updated 8 months ago
- Obfuscating function calls using Vectored Exception Handlers by redirecting execution through exception-based control flow. Uses byte swa…☆111Updated 3 months ago
- Ransomware written in go, encrypt - decrypt.☆29Updated 9 months ago
- Standalone Metasploit-like XOR encoder for shellcode☆50Updated last year
- Unhook Ntdll.dll, Go & C++.☆32Updated 9 months ago
- The best powershell obfuscator ever made☆119Updated 6 months ago
- ☆28Updated last year
- Windows Protected Process Light toggle tool — dynamically finds offsets and patches EPROCESS using RTCore64☆64Updated 9 months ago
- WinApi Patcher is a straightforward tool leveraging windows API hooking to patch and modify certain behaviors in a targeted environment.☆43Updated last year