ac3ss0r / c2shellLinks
A C/C++ framework designed to simplify shellcode creation on any compilers and platforms using C. Supports Windows & Linux, and practically any existing architecture.
☆18Updated last year
Alternatives and similar repositories for c2shell
Users that are interested in c2shell are comparing it to the libraries listed below
Sorting:
- An x86-64 code virtualizer for VM based obfuscation☆137Updated 9 months ago
- ☆32Updated last year
- A library to assist with memory & code protection.☆64Updated last year
- PoC kernel to usermode injection☆86Updated last year
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆47Updated 2 years ago
- Kernel ReClassEx☆64Updated last year
- Experiment with PAGE_GUARD protection to hide memory from other processes☆51Updated last year
- A method to Disable DSE using .data ptr hooks☆36Updated last year
- POC Hook of nt!HvcallCodeVa☆52Updated 2 years ago
- ntoskrnl .data hooks for UM-KM communication☆51Updated last year
- Detects virtual machines and malware analysis environments☆138Updated 2 years ago
- Runtime Hyper-V Hijacking with DDMA☆63Updated 2 months ago
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆46Updated 2 years ago
- hidden_syscall - syscaller without using syscall instruction in code☆62Updated 2 years ago
- Made by scammer so i leak for free ! have fun☆54Updated 2 years ago
- Binary rewriter for 64-bit PE files.☆84Updated last year
- PAGE_GUARD based hooking library☆52Updated 3 years ago
- Obfuscate calls to imports by patching in stubs☆71Updated 4 years ago
- ☆123Updated 2 years ago
- windows kernel pagehook☆40Updated 2 years ago
- intel vt-x type 2 hypervisor☆59Updated 6 months ago
- C/C++ antidebugging library for Windows☆38Updated last month
- Bypass detection from Flare-floss☆26Updated last year
- DSE & PG bypass via BYOVD attack☆64Updated 3 months ago
- clearing traces of a loaded driver☆47Updated 3 years ago
- driver that communicates using a shared section☆73Updated 6 months ago
- Allows for same-file KernelMode function execution using Encrypted addresses of Functions☆46Updated 2 weeks ago
- Forked LLVM focused on MSVC Compatibility. This version is designed for windows users☆117Updated 2 weeks ago
- Windows PDB parser for kernel-mode environment.☆99Updated 4 months ago
- Yet another IDA Pro/Home plugin for deobfuscating stack strings☆88Updated last week