berryalen02 / PECracker
针对PE文件的分离的攻防对抗工具,红队、研究者的好帮手。目前支持文件头伪装、证书区段感染。A no-kill confrontation tool for the separation of PE files, a good helper for red teams and researchers. Currently, file header spoofing and certificate segment infection are supported.
☆256Updated 7 months ago
Alternatives and similar repositories for PECracker:
Users that are interested in PECracker are comparing it to the libraries listed below
- Generate DLL Hijacking Payload in batches.☆128Updated 7 months ago
- EXE转ShellCode工具☆198Updated 2 years ago
- 使用Visral Studio开发ShellCode☆189Updated last year
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆140Updated 9 months ago
- Next Generation C2 Framework☆180Updated this week
- 免杀主流防病毒软件☆100Updated last week
- 免杀与恶意软件开发☆215Updated 9 months ago
- 添加计划任务方法集合☆275Updated last year
- 一键生成免杀木马的 shellcode 免杀框架☆178Updated 8 months ago
- 重构了Cobaltstrike Beacon,行为对国内主流杀软免杀,支持4.1以上的版本。 A cobaltstrike Beacon bypass anti-virus, supports 4.1+ version.☆295Updated 2 years ago
- EDR绕过demo☆290Updated last year
- bypassAll静态引擎,如绕过QVM,绕过VT所有静态引擎☆142Updated last year
- ☆145Updated last year
- 通过生成不同hash的ico并写入程序中,实现批量bypass360QVM☆230Updated last year
- 一款基于PE Patch技术的后渗透免杀工具,支持32位和64位☆304Updated 2 weeks ago
- 免杀知识库 | 开源免杀木马效果测试 360 火绒 卡巴斯基 Microsoft Defender | 免杀工具汇总☆191Updated 3 weeks ago
- 关于RPC一些绕EDR的tips☆164Updated 2 years ago
- 寻找可利用的白文件☆491Updated 10 months ago
- Red Team C2 Framework with AV/EDR bypass capabilities.☆371Updated last month
- 远程shellcode加载&权限维持+小功能☆293Updated 10 months ago
- 一个手动或自动patch shellcode到二进制文件的免杀工具/A tool for manual or automatic patch shellcode into binary file oder to bypass AV.☆461Updated 6 months ago
- 基于 OPSEC 的 CobaltStrike 后渗透自动化链☆423Updated last year
- 无Windows API的新型恶意程序:自缺陷程序利用堆栈溢出的隐匿稳定攻击技术研究,A new type of malicious program without Windows API☆81Updated last week
- 集合多种方式的ShellcodeLoader☆122Updated last year
- 风暴免杀-bypass defender、360、vt☆195Updated last year
- Cobalt Strike 二开项目☆182Updated 2 years ago
- 将dll exe 等转成shellcode 最后输出exe 可定制加载器模板 支持白文件的捆绑 shellcode 加密☆362Updated 2 years ago
- This is my FirstRepository☆320Updated last year
- Some demos to bypass EDRs or AVs by 78itsT3@m☆350Updated 2 years ago
- 通过反射DLL注入、Win API、C#、以及底层实现NetUserAdd方式实现BypassAV进行增加用户的功能,实现Cobalt Strike插件化☆334Updated 2 years ago