C++ function that will automagically unhook a specified Windows API
☆63Oct 14, 2020Updated 5 years ago
Alternatives and similar repositories for APIunhooker
Users that are interested in APIunhooker are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- UnhookMe is an universal Windows API resolver & unhooker addressing problem of invoking unmonitored system calls from within of your Red …☆348Jul 3, 2022Updated 4 years ago
- Project to check which Nt/Zw functions your local EDR is hooking☆202Mar 21, 2021Updated 5 years ago
- .Net Assembly to block ETW telemetry in current process☆79May 14, 2020Updated 6 years ago
- Windows PE - TLS (Thread Local Storage) Injector in C/C++☆107Jan 3, 2021Updated 5 years ago
- Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS head…☆597Jul 26, 2021Updated 5 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- D/Invoke port of UrbanBishop☆108Jul 19, 2020Updated 6 years ago
- PoC to demonstrate how CLR ETW events can be tampered.☆191Mar 26, 2020Updated 6 years ago
- ☆50Dec 15, 2025Updated 7 months ago
- C# Based Universal API Unhooker☆408Feb 18, 2022Updated 4 years ago
- A port of FuzzySecurity's UrbanBishop project for inline shellcode execution☆119Sep 29, 2020Updated 5 years ago
- AndrewSpecial, dumping lsass' memory stealthily and bypassing "Cilence" since 2019.☆390Jun 2, 2019Updated 7 years ago
- LittleCorporal: A C# Automated Maldoc Generator☆227Jul 30, 2021Updated 5 years ago
- Obfuscate ECMA CIL (.NET IL) assemblies to evade Windows Defender AMSI☆238Jun 9, 2023Updated 3 years ago
- Simple Aggressor Scripts for Cobalt Strike☆13Sep 24, 2020Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- The program is designed to obfuscate the shellcode.☆203Jul 13, 2021Updated 5 years ago
- Userland API Unhooker Project☆111Apr 4, 2026Updated 4 months ago
- Evading WinDefender ATP credential-theft☆256Dec 2, 2019Updated 6 years ago
- Custom Metasploit post module to executing a .NET Assembly from Meterpreter session☆345Jul 21, 2020Updated 6 years ago
- A faithful transposition of the key features/functionality of @itm4n's PPLDump project as a BOF.☆142Sep 24, 2021Updated 4 years ago
- New UAC bypass for Silent Cleanup for CobaltStrike☆189Jul 14, 2021Updated 5 years ago
- PE File Blessing - To continue or not to continue☆86Nov 23, 2019Updated 6 years ago
- ☆73Oct 24, 2021Updated 4 years ago
- Managed assembly shellcode generation☆281Mar 19, 2021Updated 5 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- A small commented POC for removing API hooks placed by AV/EDR.☆34Jun 12, 2020Updated 6 years ago
- Resolve syscall numbers at runtime for all Windows versions.☆60Nov 21, 2024Updated last year
- DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will auto…☆15Apr 2, 2026Updated 4 months ago
- Windows user-land hooks manipulation tool.☆147Apr 20, 2021Updated 5 years ago
- A meterpreter extension for applying hooks to avoid windows defender memory scans☆251Aug 13, 2020Updated 5 years ago
- Evasive shellcode loader for bypassing event-based injection detection (PoC)☆837Aug 23, 2021Updated 4 years ago
- D/Invoke port of UrbanBishop☆30Dec 13, 2020Updated 5 years ago
- Proof-of-concept obfuscation toolkit for C# post-exploitation tools☆429Jul 22, 2022Updated 4 years ago
- ☆23May 28, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A C# tool to search through a running instance of Outlook for keywords☆110Jan 14, 2021Updated 5 years ago
- Using DInvoke to patch AMSI.dll in order to bypass AMSI detections triggered when loading .NET tradecraft via Assembly.Load().☆216Mar 5, 2020Updated 6 years ago
- Simple and sane cryptographic wrapper library.☆27Apr 21, 2023Updated 3 years ago
- Using "svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc" as trigger☆58Oct 7, 2020Updated 5 years ago
- Small POC written in C# that performs shellcode injection on x64 processes using direct syscalls as a way to bypass user-land EDR hooks.☆84Dec 20, 2019Updated 6 years ago
- ☆100Sep 20, 2021Updated 4 years ago
- Asynchronous Password Spraying Tool in C# for Windows Environments☆318Dec 19, 2023Updated 2 years ago