S12cybersecurity / GhostlyHollowingCrypterLinks
Advanced in-memory process injection using transient SEC_IMAGE sections, custom crypter, and ADS payload delivery no disk traces, maximum stealth.
☆14Updated 7 months ago
Alternatives and similar repositories for GhostlyHollowingCrypter
Users that are interested in GhostlyHollowingCrypter are comparing it to the libraries listed below
Sorting:
- Selective In-Memory Syscall Unhooking, a stealthy method to bypass user-mode hooks in ntdll.dll☆24Updated 6 months ago
- Rewrite to fit my needs☆32Updated last year
- HTML smuggling is not an evil, it can be useful☆14Updated 2 years ago
- Public repo of some woking evilginx phishlets☆40Updated last year
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆51Updated last year
- Repository to gather the .NET malware I will be developing☆18Updated 9 months ago
- Nim process hollowing loader☆62Updated 5 months ago
- This is way to load a shellcode, and obfuscate it, so it avoids scantime detection.☆90Updated 8 months ago
- Excel Add In Payload Generator☆13Updated 2 years ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆101Updated 8 months ago
- Automated Evilginx phishlet creator Extension for Burpsuite☆60Updated last year
- Cortex EDR Ransomware protection Bypass☆25Updated 11 months ago
- Classic Process Injection with Memory Evasion Techniques implemantation☆72Updated 2 years ago
- PandaCrypter is a C#-based tool designed to convert PowerShell scripts into obfuscated batch files (.bat) with encryption and additional …☆43Updated 5 months ago
- ☆44Updated last year
- Another version of .NET loader provides capabilities of bypassing ETW and AMSI, utilizing VEH for syscalls and loading .NET assemblies☆49Updated 6 months ago
- Bypasses AMSI protection through remote memory patching and parsing technique.☆54Updated 8 months ago
- Small project to facilitate creation of .lnk payloads☆76Updated 3 years ago
- Unhook Ntdll.dll, Go & C++.☆32Updated 8 months ago
- Identifies LOLDrivers that are not blocked by the active HVCI policy — ideal for BYOVD scenarios.☆74Updated 5 months ago
- Just another repository for malware development☆12Updated last year
- Internal Monologue BOF☆79Updated last year
- A tool to modify SCCM remote control settings on the client machine, enabling remote control without permission prompts or notifications.…☆112Updated last year
- Shellcode and In-PowerShell solution for patching AMSI via Page Guard Exceptions☆60Updated 2 months ago
- A pure C version of SymProcAddress☆30Updated last year
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆102Updated 9 months ago
- This project is an implant framework designed for long term persistent access to Windows machines.☆110Updated 2 years ago
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆101Updated last year
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆83Updated last year
- Windows Thread Pool Injection Havoc Implementation☆33Updated last year