KingKDot / ExorcismLinks
The first open source runtime windows batch and command line deobfuscator
☆40Updated 2 months ago
Alternatives and similar repositories for Exorcism
Users that are interested in Exorcism are comparing it to the libraries listed below
Sorting:
- SysCaller: SDK for WindowsAPI via syscalls. Dynamic Resolution, Obfuscation, Multi-Language Bindings, & more!☆49Updated last week
- Advanced dynamic malware analysis tool.☆82Updated last year
- Troll TaskManager, and play with it .☆27Updated 2 months ago
- Nim process hollowing loader☆60Updated 3 months ago
- A Bumblebee-inspired Crypter☆78Updated 2 years ago
- ☆50Updated last year
- ☆12Updated last year
- Ransomware written in go, encrypt - decrypt.☆29Updated 6 months ago
- simple user-mode Rootkit☆107Updated 3 years ago
- Unhook Ntdll.dll, Go & C++.☆30Updated 6 months ago
- Safely manage the unloading of DLLs that have been hooked into a process. Context: https://github.com/KNSoft/KNSoft.SlimDetours/discussio…☆78Updated 4 months ago
- ☆38Updated last year
- using the gpu to hide your payload☆63Updated 3 years ago
- Bypasses AMSI protection through remote memory patching and parsing technique.☆50Updated 5 months ago
- Research into removing strings & API call references at compile-time (Anti-Analysis)☆27Updated last year
- kernel-mode DLL Injector☆115Updated 6 months ago
- Evilbytecode-Gate resolves Windows System Service Numbers (SSNs) using two methods: analyzing the Guard CF Table in ntdll.dll and parsing…☆23Updated 6 months ago
- A simple commandline application to automatically decrypt strings from Obfuscator protected binaries☆47Updated last year
- a stage1 DLL loader with sleep obfuscation☆35Updated 2 years ago
- "Service-less" driver loading☆162Updated 11 months ago
- Obfuscating function calls using Vectored Exception Handlers by redirecting execution through exception-based control flow. Uses byte swa…☆48Updated this week
- Fork of Get-InjectedThread - https://gist.github.com/jaredcatkinson/23905d34537ce4b5b1818c3e6405c1d2☆46Updated 2 years ago
- A 64 bit executable junk code engine for polymorphic malware.☆71Updated 4 months ago
- A unique introduction to native runtime obfuscation.☆73Updated 7 months ago
- The best powershell obfuscator ever made☆112Updated 3 months ago
- ☆26Updated 7 months ago
- Compile shellcode into an exe file from Windows or Linux.☆70Updated 4 months ago
- Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE☆66Updated 2 years ago
- Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules☆131Updated this week
- PoC for popping a system shell against the LnvMSRIO.sys driver☆109Updated 3 weeks ago