bytecode77 / winapi-ex
☆58Updated this week
Related projects: ⓘ
- Gozi-MBR-rootkit Bootkit Modified☆68Updated 7 years ago
- PoC designed to evade userland-hooking anti-virus.☆85Updated 5 years ago
- ☆34Updated this week
- Use NT Native Registry API to create a registry that normal user can not query.☆54Updated 6 years ago
- GUI Application in C# to run and disassemble shellcode☆35Updated 7 years ago
- Protects deletion of files with a specified extension using a kernel-mode driver.☆73Updated 6 years ago
- Various Crypter Project☆50Updated 10 years ago
- Persistent through COM Hijacking☆20Updated 5 years ago
- Slui File Handler Hijack UAC Bypass Local Privilege Escalation☆88Updated 2 years ago
- ☆12Updated 7 years ago
- A ready-made template for a project based on libpeconv.☆40Updated last year
- Inject .Net payloads into other .Net assemblies on disk☆61Updated 4 years ago
- ☆44Updated this week
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 6 years ago
- DLL Injection Library & Tools☆71Updated 8 years ago
- PoC for detecting and dumping process hollowing code injection☆50Updated 5 years ago
- Bootkit for Windows 7☆27Updated 10 years ago
- A reduced functionality cli client for the imdisk ram disk driver. To be used through a backdoor like meterpreter☆22Updated 6 years ago
- Ammyy v3 Source Code leak , with ❤️ <3☆36Updated 7 years ago
- ReaCOM has got a lot of tools to use and is related to component object model☆73Updated 4 years ago
- ☆81Updated this week
- A minimal safe version of mimikatz to only allow the export of non-exportable Windows certificates☆24Updated 5 years ago
- Shortcut Downloader☆11Updated 7 years ago
- ☆45Updated 6 years ago
- Shellcode Of Death☆38Updated 11 years ago
- PoC for detecting and dumping code injection (built and extended on UnRunPE)☆54Updated 5 years ago
- Blog posts☆30Updated 4 years ago
- medium-rare☆27Updated 4 years ago
- Introduce you to shellcode development.☆23Updated 8 years ago
- Bypass antivirus with dynamic import. Hide the api(s) used.☆27Updated 8 years ago