VM一键加壳/脱壳,全压缩,反调试等
☆340Jul 6, 2024Updated last year
Alternatives and similar repositories for Shell_Protect
Users that are interested in Shell_Protect are comparing it to the libraries listed below
Sorting:
- win32下的虚拟机保护壳☆145Nov 27, 2014Updated 11 years ago
- Windows CVE主防(HIPS/HIDS)☆58Apr 29, 2021Updated 4 years ago
- Hades HIDS/HIPS for Windows☆309Oct 10, 2025Updated 5 months ago
- PE加壳程序☆79May 12, 2019Updated 6 years ago
- 安全卫士r3工具集☆37Dec 4, 2019Updated 6 years ago
- 基于行为特征进行快速匹配病毒专杀工具,辅助应急响应☆37May 20, 2020Updated 5 years ago
- 将shellcode用rsa加密并动态编译exe,自带几种反沙箱技术。☆518Jul 9, 2020Updated 5 years ago
- 使用多种WinAPI进行权限维持的CobaltStrike脚本,包含API设置系统服务,设置计划任务,管理用户等。☆554Jan 18, 2022Updated 4 years ago
- 研究和移除各种内核回调,在anti anti cheat的路上越走越远☆182Aug 26, 2022Updated 3 years ago
- 使用C++控制台实现的加壳器☆83Mar 11, 2019Updated 7 years ago
- 创建隐藏计划任务,权限维持,Bypass AV☆559Sep 1, 2021Updated 4 years ago
- Windows对抗沙箱和虚拟机的方法总结☆401Apr 22, 2020Updated 5 years ago
- 无痕注入1☆77Jun 1, 2021Updated 4 years ago
- 基于upx的SM4加密壳☆10May 12, 2023Updated 2 years ago
- 使用纯C/C++编写的ShellCode生成框架☆452May 25, 2019Updated 6 years ago
- PE文件解析和加壳工具☆18Feb 21, 2023Updated 3 years ago
- golang打包二进制进行免杀☆234Apr 7, 2021Updated 4 years ago
- 免杀,bypassav,免杀框架,nim,shellcode,使用nim编写的shellcode加载器☆690Feb 11, 2026Updated last month
- CobaltStrike Beacon written in .Net 4 用.net重写了stager及Beacon,其中包括正常上线、文件管理、进程管理、令牌管理、结合SysCall进行注入、原生端口转发、关ETW等一系列功能☆729Sep 1, 2021Updated 4 years ago
- 利用图片隐写术来远程动态加载shellcode☆98Nov 14, 2022Updated 3 years ago
- Kernel Anit Anit Debug Plugins 内核反反调试插件☆480Aug 31, 2021Updated 4 years ago
- 基于Unicorn仿真PE模拟☆31Apr 22, 2022Updated 3 years ago
- shellcodeloader☆1,747Dec 11, 2020Updated 5 years ago
- 红队行动中利用白利用、免杀、自动判断网络环境生成钓鱼可执行文件。☆366Jun 19, 2024Updated last year
- 学习加壳技术的案例代码☆24Nov 9, 2021Updated 4 years ago
- 影子用户 克隆☆233Dec 30, 2021Updated 4 years ago
- 通过反射DLL注入、Win API、C#、以及底层实现NetUserAdd方式实现BypassAV进行增加用户的功能,实现Cobalt Strike插件化☆344Apr 10, 2022Updated 3 years ago
- 汇总了目前可以找到 的所有的进程注入的方式,完成了x86/x64下的测试,不断更新中☆284Feb 8, 2022Updated 4 years ago
- Bypass AV 用户添加☆169Dec 30, 2021Updated 4 years ago
- 强制关闭360 需要管理员权限☆170Feb 6, 2022Updated 4 years ago
- 有关 dll 转发的 golang windows 恶意代码示例☆83Aug 20, 2021Updated 4 years ago
- ☆155Jun 18, 2024Updated last year
- Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThrea…☆1,296Jun 21, 2024Updated last year
- X86 version of syswhispers2 / x86 direct system call☆330Jan 28, 2021Updated 5 years ago
- 可在Windows下执行系统命令的Redis模块,可用于Redis主从复制攻击。☆264Nov 25, 2022Updated 3 years ago
- 检测绝大部分所谓的内存免杀马☆734Sep 15, 2022Updated 3 years ago
- 隐藏可执行内存☆267Apr 27, 2025Updated 10 months ago
- Some crazy PE executables protection kernel driver☆20May 2, 2020Updated 5 years ago
- 清除Go编译时自带的信息☆855Jul 20, 2022Updated 3 years ago