MalwareTech / CreateDesktop
Example application for creating multiple desktops on Windows
☆133Updated 6 years ago
Alternatives and similar repositories for CreateDesktop:
Users that are interested in CreateDesktop are comparing it to the libraries listed below
- A utility to use the usermode shellcode from the DOUBLEPULSAR payload to reflectively load an arbitrary DLL into another process, for use…☆115Updated 7 years ago
- ChimeraPE (a PE injector type - alternative to: RunPE, ReflectiveLoader, etc) - a template for manual loading of EXE, loading imports pay…☆218Updated last year
- Inject code into a legitimate process☆143Updated 10 years ago
- Demos of various (also non standard) persistence methods used by malware☆219Updated last year
- Passive UAC elevation using dll infection☆73Updated 10 years ago
- An improvement of the original reflective DLL injection technique by Stephen Fewer of Harmony Security☆319Updated 7 years ago
- InfectPE - Inject custom code into PE file [This project is not maintained anymore]☆322Updated 7 years ago
- Carberp Banking Trojan☆110Updated 9 years ago
- A C/C++ implementation of Microsoft's Antimalware Scan Interface☆175Updated 6 years ago
- A process overwriting its own PEB to make an illusion that it has been loaded from a different path.☆93Updated 3 years ago
- PowerLoaderEx - Advanced Code Injection Technique for x32 / x64☆361Updated 7 years ago
- Proof of concept implementation of in-memory PE Loader based on ReflectiveDLLInjection Technique☆150Updated 6 years ago
- Bypassing User Account Control (UAC) using TpmInit.exe☆126Updated 8 years ago
- Process Doppelgänging☆155Updated 7 years ago
- PoC designed to evade userland-hooking anti-virus.☆87Updated 5 years ago
- a program to detect reflective dll injection on a live machine☆74Updated 9 years ago
- A "not-evil" keylogger with Unicode support☆27Updated 11 years ago
- This is a simple example and explanation of obfuscating API resolution via hashing☆232Updated 4 years ago
- Reflective PE loader for DLL injection☆171Updated 7 years ago
- ☆396Updated 7 years ago
- Adds a user-mode asynchronous procedure call (APC) object to the APC queue of the specified thread and spoof the Parent Process.☆155Updated 5 years ago
- Windows Reverse Shell shellcode☆61Updated 2 years ago
- KINS Banking Trojan☆62Updated 9 years ago
- PoC dlls for Task Scheduler COM Hijacking☆90Updated 8 years ago
- Hollow Process / Dynamic Forking / RunPE injection technique implemented in Python☆53Updated 3 years ago
- ZeroAccess v3 toolkit☆161Updated 7 years ago
- Patching ROP-encoded shellcodes into PEs☆184Updated 7 years ago
- DLL Injection Library & Tools☆71Updated 8 years ago
- Collection of CSharp Assemblies focused on Post-Exploitation Capabilities☆223Updated 5 years ago
- Rovnix Bootkit☆120Updated 9 years ago