Ormicron / csharp-ShellcodeLoaderLinks
基于csharp实现的免杀shellcode加载器
☆32Updated 4 years ago
Alternatives and similar repositories for csharp-ShellcodeLoader
Users that are interested in csharp-ShellcodeLoader are comparing it to the libraries listed below
Sorting:
- geacon for apt profile☆21Updated 3 years ago
- A Mimikatz For Only Extracting Login Passwords.(Bypasses Most AV's)☆58Updated 3 years ago
- cmd2shellcode☆79Updated 4 years ago
- Invoke-Obfuscation-Bypass + PS2EXE 过主流杀软☆54Updated 4 years ago
- Re-implement cmd.exe using windows api☆49Updated 2 years ago
- CVE-2020-1472 C++☆83Updated 3 years ago
- 通过WindowsAPI获取用户凭证,并保存到文件中☆194Updated last year
- ☆46Updated 4 years ago
- 替代PrintBug用于本地提权的新方式,主要利用MS-EFSR协议中的接口函数 借鉴了Potitpotam中对于EFSR协议的利用,实现了本地提权的一系列方式 Drawing on the use of the EFSR protocol in Potitpotam, …☆149Updated 3 years ago
- dump lsass☆37Updated 3 years ago
- ☆102Updated 3 years ago
- PrintSpoofer的反射dll实现,结合Cobalt Strike使用☆89Updated 4 years ago
- c++ shellcode loader☆40Updated 3 years ago
- ReflectiveDLL☆156Updated 5 years ago
- 批量检查远程桌面密码或ntlm是否正确☆41Updated 4 years ago
- CobaltStrike and Google Auth twice☆64Updated 4 years ago
- MS-EFSR EfsRpcOpenFileRaw with SeImpersonatePrivilege local privalege escalation vulnerability☆19Updated 4 years ago
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆34Updated 3 years ago
- 在权限足够的情况下弹出system权限的cmd命令行,包含exe和dll两种文件类型,可用于一些可能存在本地提权漏洞的测试。☆34Updated 3 years ago
- PrintNightmare , Local Privilege Escalation of CVE-2021-1675 or CVE-2021-34527☆59Updated 4 years ago
- 异或shellcode和ppid欺骗免杀☆14Updated 3 years ago
- PrintNightMare LPE提权漏洞的CS 反射加载插件。开箱即用、通过内存加载、混淆加载的驱动名称来ByPass Defender/EDR。☆148Updated 4 years ago
- CVE-2020-0787的简单回显☆32Updated 3 years ago
- Bypass EDR Create TaskServers☆37Updated 2 years ago
- 用来存放平时写的一些net内存马,仅用于练手,需要可以自行修改☆87Updated 3 years ago
- Bypass Windows Defender☆61Updated 3 years ago
- ☆92Updated 4 years ago
- golang+c#乱写了一个基于http的垃圾远控(支持团队协同作战,功能很少)(三端)☆43Updated 3 years ago
- 创建服务持久化☆108Updated 4 years ago
- SysWhispers3WinHttp 基于SysWhispers3项目增添WinHttp分离加载功能并使用32位GCC进行编译,文件大小14KB,可免杀绕过360核晶防护与Defender☆32Updated 2 years ago