M0nster3 / RpcsDemo
关于RPC一些绕EDR的tips
☆178Updated 2 years ago
Alternatives and similar repositories for RpcsDemo:
Users that are interested in RpcsDemo are comparing it to the libraries listed below
- Cobalt Strike 二开项目☆182Updated 2 years ago
- ☆154Updated 10 months ago
- 添加计划任务方法集合☆281Updated last year
- 远程创建任务计划工具☆185Updated 3 years ago
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆127Updated last year
- 使用Visral Studio开发ShellCode☆197Updated last year
- 通过反射DLL注入、Win API、C#、以及底层实现NetUserAdd方式实现BypassAV进行增加用户的功能,实现Cobalt Strike插件化☆333Updated 3 years ago
- Generate DLL Hijacking Payload in batches.☆133Updated 8 months ago
- ☆91Updated 3 years ago
- ☆53Updated last year
- ☆61Updated 9 months ago
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆152Updated 11 months ago
- 一款基于Http.sys的利用工具☆190Updated 2 years ago
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆161Updated 9 months ago
- 重构Beacon☆156Updated 8 months ago
- beta☆116Updated 7 months ago
- IoM implant, C2 Framework and Infrastructure☆165Updated last week
- 使用 rust 实现 CobaltStrike 的 beacon || Using Rust to implement CobaltStrike's Beacon☆129Updated 2 months ago
- 域内普通域用户权限查找域内所有计算机上登录的用户☆150Updated 2 years ago
- Red team tool designed for quickly identifying hijackable programs, evading antivirus software, and EDR (Endpoint Detection and Response)…☆66Updated 2 months ago
- 白加黑的快速生成器(针对IAT类型)☆100Updated 2 years ago
- Mssql利用工具☆265Updated last year
- CVE-2020-0787的简单回显☆32Updated 3 years ago
- Take a screenshot without injection for Cobalt Strike☆187Updated last year
- Callback Function Loader Implemented in Go☆139Updated last year
- 利用白名单文件 cdb.exe 执行 shellcode☆213Updated 2 years ago
- 利用inline hook免杀绕过360,vt爆3个☆63Updated 2 years ago
- 提取域控日志,支持远程提取☆162Updated last month
- 主要用于隐藏进程真实路径,进程带windows真签名☆111Updated 6 months ago
- This is a daemon process which make a programe runing all time.☆84Updated 3 years ago