brat-volk / EntomoLoader
C++ Multi-Stage Semi-Polymorphic Malware Loader.
☆9Updated 3 years ago
Alternatives and similar repositories for EntomoLoader:
Users that are interested in EntomoLoader are comparing it to the libraries listed below
- Next gen process injection technique☆44Updated 4 years ago
- Криптор на шелл-кодах☆10Updated 4 years ago
- A multi-staged malware that contains a kernel mode rootkit and a remote system shell.☆72Updated 3 years ago
- Collection of source code for Polymorphic, Metamorphic, and Permutation Engines used in Malware☆26Updated 5 years ago
- A Bumblebee-inspired Crypter☆80Updated 2 years ago
- Research of modifying exported function names at runtime (C/C++, Windows)☆17Updated 8 months ago
- ZwProcessHollowing is a x64 process hollowing project which uses direct systemcalls, dll unhooking and RC4 payload decryption☆81Updated last year
- 💻 Windows 10 Kernel-mode rootkit☆31Updated 2 years ago
- GetModuleHandle (via PEB) and GetProcAddress (via EAT) like☆32Updated 3 years ago
- a stage1 DLL loader with sleep obfuscation☆35Updated 2 years ago
- Process Hollowing demonstration & explanation☆35Updated 3 years ago
- A simple packer working with all PE files which cipher your exe with a XOR implementation☆14Updated 4 years ago
- ☆37Updated 3 years ago
- kernel to user mode APC injector☆44Updated 2 years ago
- Reimplementation of the KExecDD DSE bypass technique.☆46Updated 5 months ago
- Piece of code to detect and remove hooks in IAT☆62Updated 2 years ago
- ☆29Updated 10 months ago
- Fud Runpe Av Evasion / All Av Bypass☆32Updated last year
- XssBot-Модульный резидентный бот с супер админкой☆12Updated 2 years ago
- ☆15Updated 3 years ago
- A Simple AES Command Line Crypter☆35Updated 2 years ago
- A simple example on how to initiate a direct syscall on WoW64☆11Updated 7 years ago
- This is a free & Open source File dropper that is made strictly for EdUcAtIoNaL pUrPoSeS of course☆28Updated 2 years ago
- Simple PE Packer Which Encrypts .text Section☆51Updated 7 years ago
- Research into removing strings & API call references at compile-time (Anti-Analysis)☆24Updated 8 months ago
- Small PoC of using a Microsoft signed executable as a lolbin.☆134Updated last year
- Hellokitty Ransomware Source Code☆15Updated last year
- Red Team Operation's Defense Evasion Technique.☆51Updated 8 months ago
- Antivirus killer using ring-0 kernel driver. Antivirus processes will automatically close while the killer is running.☆6Updated 2 years ago
- A python polymorphic engine for C programs☆12Updated last year