gharty03 / Conti-Ransomware
Full source of the Conti Ransomware Including the missing Locker files from the original leak. I have fixed some of the errors intentionally introduced by the leaker to prevent the locker from being built. The Queue header file which implements a few linked list data structures that Conti uses for task scheduling in the Threadpool had several mi…
☆140Updated last year
Alternatives and similar repositories for Conti-Ransomware:
Users that are interested in Conti-Ransomware are comparing it to the libraries listed below
- Revenant - A 3rd party agent for Havoc that demonstrates evasion techniques in the context of a C2 framework☆376Updated 8 months ago
- My collection of malware dev links☆262Updated 7 months ago
- ☆121Updated last year
- Performing Indirect Clean Syscalls☆535Updated 2 years ago
- ☆348Updated last year
- Analyse your malware to surgically obfuscate it☆464Updated last month
- JustEvadeBro, a cheat sheet which will aid you through AMSI/AV evasion & bypasses.☆307Updated 8 months ago
- Conti Locker source code☆191Updated 3 years ago
- ☆255Updated last year
- Indirect Dynamic Syscall, SSN + Syscall address sorting via Modified TartarusGate approach + Remote Process Injection via APC Early Bird …☆671Updated last month
- This repository contains various snippets I use in my malware, command and control servers, payloads, and much more. Hopefully it can hel…☆176Updated last month
- Bypass Malware Sandbox Evasion Ram check☆137Updated 2 years ago
- ☆324Updated last year
- Write-ups and proof of concepts of design and implementaion of various modern malwares.☆27Updated 2 years ago
- An advanced Ransomware written in C++ and fully customizable☆87Updated last year
- Windows Kernel Mode Rootkit☆52Updated this week
- This comprehensive and central repository is designed for cybersecurity enthusiasts, researchers, and professionals seeking to stay ahead…☆117Updated 3 months ago
- C++ self-Injecting dropper based on various EDR evasion techniques.☆370Updated last year
- A proof of concept demonstrating the DLL-load proxying using undocumented Syscalls.☆335Updated 2 months ago
- Cybersecurity research results. Simple C/C++ and Python implementations☆222Updated last week
- Encrypted shellcode Injection to avoid Kernel triggered memory scans☆368Updated last year
- Advanced Keylogger / Info Grabber written in C++.☆30Updated last month
- Automated DLL Sideloading Tool With EDR Evasion Capabilities☆469Updated last year
- Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths☆328Updated 8 months ago
- A PoC of the ContainYourself research presented in DEFCON 31, which abuses the Windows containers framework to bypass EDRs.☆310Updated last year
- Reduce Entropy And Obfuscate Youre Payload With Serialized Linked Lists☆433Updated last year
- "AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS☆272Updated 2 weeks ago
- Slides & Code snippets for a workshop held @ x33fcon 2024☆257Updated 10 months ago
- This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp…☆416Updated last year
- Implementing the ghostly hollowing PE injection technique using tampered syscalls.☆144Updated last month