Yihsiwei / admin2systemLinks
父进程欺骗,另类administrator提权到system
☆35Updated 3 years ago
Alternatives and similar repositories for admin2system
Users that are interested in admin2system are comparing it to the libraries listed below
Sorting:
- 白加黑的快速生成器(针对IAT类型)☆114Updated 3 years ago
- A tool that expands the size of the text section in a PE file without loss, supporting both 32-bit and 64-bit programs.☆41Updated last year
- 免杀计划任务进行权限维持,过 主流杀软。 A schtask tool bypass anti-virus☆73Updated 3 years ago
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆181Updated last year
- dll劫持、dll hijack、Bypass Antivirus、Red Team☆58Updated last year
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆138Updated 2 years ago
- 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》☆161Updated last year
- ☆70Updated last year
- 过360拦截加载无驱动签名☆60Updated 4 years ago
- 利用inline hook免杀绕过360,vt爆3个☆63Updated 3 years ago
- windows黑客编程基础(C\C++)☆44Updated 6 years ago
- XOR 加密 分离免杀☆67Updated 2 years ago
- ☆92Updated 4 years ago
- vehsyscall:a syscall project that may bypass EDR☆61Updated last year
- SigFlip与白加黑的完美结合。☆37Updated 8 months ago
- 使用kcp实现的socks5正向代理☆12Updated 2 years ago
- Remote Download and Memory Execute for shellcode framework☆96Updated 3 years ago
- 过木马免杀制作器☆55Updated 2 years ago
- 一个2020年练手的基于gin框架搞的在线免杀平台,支持后台管理,邀请码注册等☆39Updated last year
- Windows 平台下的UAC(User Account Contro) 绕过工具。☆66Updated last year
- 制作 shellcode 的模板☆31Updated last year
- 重构Beacon☆15Updated last year
- SysWhispers3WinHttp 基于SysWhispers3项目增添WinHttp分离加载功能并使用32位GCC进行编译,文件大小14KB,可免杀绕过360核晶防护与Defender☆32Updated 2 years ago
- 将任何 elf 或命令转换为 shellcode☆61Updated last year
- 调用x64dbg中的loadll.exe白加黑示例代码☆65Updated last year
- Loader Pre-Technology, Main thread hijacking without using API, get ntdll and kernel32 handle without peb. 加载器前置技术,不使用API进行主线程劫持,不使用PEB…☆92Updated 6 months ago
- Get password/cookie/history from browser and use devtools protocol to bypass edr monitoring☆62Updated 9 months ago
- 利用图片隐写术来远程动态加载shellcode☆98Updated 3 years ago
- 基于go的简单劫持方法☆50Updated 4 years ago
- 主要用于隐藏进程真实路径,进程带windows真签名☆119Updated last year