gabrielepongelli / polyLinks
A C++ library to build Polymorphic Viruses.
☆10Updated 2 years ago
Alternatives and similar repositories for poly
Users that are interested in poly are comparing it to the libraries listed below
Sorting:
- A simple Windows kernel rootkit.☆96Updated 8 months ago
- A kernel-mode rootkit with remote control☆221Updated 5 years ago
- Allows you to find the use of ScyllaHide, if your program will debug and restore hooking functions bytes.☆26Updated 6 years ago
- Process Hollowing in C++ (x86 / x64) - Process PE image replacement☆177Updated 2 years ago
- ☆46Updated last year
- Examples of Metamorphic and Polymorphic code☆35Updated 5 years ago
- Obfuscate calls to imports by patching in stubs☆72Updated 4 years ago
- Header only library for obfuscation import winapi functions.☆43Updated 11 months ago
- Example Windows Kernel-mode Driver which enumerates running processes.☆60Updated 3 years ago
- Cryline project - It's a simple test ransomware for Windows OS without stable encryption. Pls use this source code for study purposes on…☆58Updated 8 months ago
- simple user-mode Rootkit☆108Updated 3 years ago
- [ARCHIVED] Early work on Abyss (Windows UEFI Bootkit).☆41Updated 5 months ago
- Various Process Injection Techniques☆163Updated 3 years ago
- Advanced Remote Access Trojan & Server☆38Updated 4 years ago
- IAT Hooking POC (x86 / x64) - Hook functions through the IAT☆36Updated last year
- PE Header (.rdata,.data,.text) obsfucation☆36Updated 3 years ago
- load unsigned kernel-driver by patching dse in 248 lines☆139Updated last year
- A x64 PE Packer/Protector Developed in C++ and VisualStudio☆55Updated 2 years ago
- SMM rootkit similar to LoJax or MosaicRegressor☆145Updated 2 years ago
- POC Ring3 Windows Rootkit (x86 / x64) - Hide processes and files☆62Updated 2 years ago
- Detects virtual machines and malware analysis environments☆146Updated 3 years ago
- ☆45Updated 4 years ago
- DSE & PG bypass via BYOVD attack☆77Updated 6 months ago
- C/C++ antidebugging library for Windows☆51Updated 2 months ago
- Exploit MsIo vulnerable driver☆124Updated 4 years ago
- Protect a process from code injection, termination and hooking☆49Updated 4 years ago
- Anti-debug library based on al-khaser with ScyllaHide/TitanHide detection.☆63Updated 6 years ago
- Скрытие Win API☆27Updated 6 years ago
- Using ioctl major function swaps to "spoof" the ARP table☆15Updated last year
- Compact MBR Bootkit for Windows☆52Updated 4 years ago