gharty03 / Conti-RansomwareLinks
Full source of the Conti Ransomware Including the missing Locker files from the original leak. I have fixed some of the errors intentionally introduced by the leaker to prevent the locker from being built. The Queue header file which implements a few linked list data structures that Conti uses for task scheduling in the Threadpool had several mi…
☆163Updated 2 years ago
Alternatives and similar repositories for Conti-Ransomware
Users that are interested in Conti-Ransomware are comparing it to the libraries listed below
Sorting:
- Write-ups and proof of concepts of design and implementaion of various modern malwares.☆29Updated 2 years ago
- Conti Locker source code☆197Updated 3 years ago
- Cybersecurity research results. Simple C/C++ and Python implementations☆283Updated this week
- My collection of malware dev links☆301Updated 6 months ago
- Revenant - A 3rd party agent for Havoc that demonstrates evasion techniques in the context of a C2 framework☆390Updated last year
- Simple undetectable shellcode and code injector launcher example. Inspired by RTO malware development course.☆277Updated 2 months ago
- ☆108Updated 3 years ago
- APT38 Tactic PoC for Stealing 0days from security researchers☆323Updated 6 months ago
- Performing Indirect Clean Syscalls☆594Updated 2 years ago
- C++ self-Injecting dropper based on various EDR evasion techniques.☆420Updated last year
- An advanced Ransomware written in C++ and fully customizable☆96Updated 2 years ago
- A curated compilation of extensive resources dedicated to bootkit and rootkit development.☆158Updated 4 months ago
- Black Angel is a Windows 11/10 x64 kernel mode rootkit. Rootkit can be loaded with enabled DSE while maintaining its full functionality.☆646Updated 2 years ago
- ☆69Updated 4 years ago
- ☆374Updated 2 years ago
- simple user-mode Rootkit☆107Updated 3 years ago
- Experimental Windows x64 Kernel Rootkit with anti-rootkit evasion features.☆575Updated 4 months ago
- Indirect Dynamic Syscall, SSN + Syscall address sorting via Modified TartarusGate approach + Remote Process Injection via APC Early Bird …☆737Updated 4 months ago
- JustEvadeBro, a cheat sheet which will aid you through AMSI/AV evasion & bypasses.☆314Updated 3 weeks ago
- Fileless attack with persistence☆370Updated 5 months ago
- This repository contains various snippets I use in my malware, command and control servers, payloads, and much more. Hopefully it can hel…☆208Updated 4 months ago
- collection of apis used in malware development☆231Updated 3 years ago
- Analyse your malware to surgically obfuscate it☆511Updated this week
- Advanced Keylogger / Info Grabber written in C++.☆33Updated 8 months ago
- This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp…☆434Updated 2 years ago
- The following two code samples can be used to understand the difference between direct syscalls and indirect syscalls☆219Updated last year
- Abusing mhyprotect to kill AVs / EDRs / XDRs / Protected Processes.☆405Updated 2 years ago
- This repository is a tool to create a .suo that when run by visual studio's will achieve code execution☆110Updated 2 years ago
- ☆259Updated last year
- A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and re…☆461Updated 2 years ago