XaFF-XaFF / WinREPL
WinREPL is a "read-eval-print loop" shell on Windows that is useful for testing/learning x86 and x64 assembly.
☆10Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for WinREPL
- Using Thread Description To Hide Shellcodes☆13Updated 2 years ago
- Subtract one PE file from another!☆19Updated 3 years ago
- A PoC to demo modifying cmdline of the child process dynamically. It might be useful against process log tracing, AV or EDR.☆37Updated 3 years ago
- Yet another Windows DLL injector.☆38Updated 3 years ago
- A PE morphing tool that allows you to mimic one executable file to another.☆11Updated 11 months ago
- Reduce Dynamic Analysis Detection Rates With Built-In Unhooker, Anti Analysis Techniques, And String Obfuscator Modules.☆18Updated last year
- XOrCryptEx lightweight C Utility/Algorithm☆11Updated 2 years ago
- automates exploits using ROP chains, using ntdll-scraper☆16Updated 2 years ago
- Implementation of ITaskHandler in C++☆12Updated last year
- An attempt at reversing WindowsDefender☆20Updated last month
- Phantom DLL Hollowing method implemented in modmap☆17Updated 3 years ago
- A kernel mode Windows rootkit in development.☆49Updated 2 years ago
- ☆48Updated last year
- run process as PPL Antimalware☆11Updated last year
- ☆12Updated 2 years ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆16Updated last year
- Tools for analyzing Windows containers and break container's isolation☆27Updated 2 years ago
- A proof of concept of real custom GetProcAddress and GetModuleBaseAddress☆19Updated 2 years ago
- ☆16Updated 2 years ago
- Exploiting ring0 memcpy-like functionality to disable Driver Signing Enforcement (DSE)☆20Updated 4 years ago
- Dangling COM Keys Finder☆14Updated 3 years ago
- C code to enable ETW tracing for Dotnet Assemblies☆28Updated 2 years ago
- Injects position-dependent code into a code cave in an executable file, and applies relocations.☆20Updated last year
- Executes shellcode from a remote server and aims to evade in-memory scanners☆30Updated 5 years ago
- Hooking Heavens Gate in a weekend☆13Updated 2 years ago