hasherezade / exe_to_dll
Converts a EXE into DLL
☆1,282Updated last year
Alternatives and similar repositories for exe_to_dll:
Users that are interested in exe_to_dll are comparing it to the libraries listed below
- Run a Exe File (PE Module) in memory (like an Application Loader)☆866Updated 3 years ago
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl☆1,133Updated last month
- AV/EDR evasion via direct system calls.☆1,831Updated 2 years ago
- Cronos is Windows 10/11 x64 ring 0 rootkit. Cronos is able to hide processes, protect and elevate them with token manipulation.☆870Updated 2 years ago
- This program is designed to demonstrate various process injection techniques☆1,094Updated last year
- Converts PE into a shellcode☆2,430Updated last year
- AV/EDR evasion via direct system calls.☆1,576Updated 2 years ago
- x64 binary obfuscator☆1,750Updated last year
- 🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc☆1,861Updated 2 years ago
- A Pin Tool for tracing API calls etc☆1,363Updated 2 weeks ago
- Obfuscate specific windows apis with different apis☆987Updated 3 years ago
- Exploiting DLL Hijacking by DLL Proxying Super Easily☆475Updated last year
- Great explanation of Process Hollowing (a Technique often used in Malware)☆1,280Updated last year
- Converts a DLL into EXE☆802Updated last year
- Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode☆2,183Updated last year
- SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature…☆1,108Updated last year
- Protected Processes Light Killer☆905Updated last year
- Win32 and Kernel abusing techniques for pentesters☆936Updated last year
- PE-bear (builds only)☆773Updated last year
- Thread Stack Spoofing - PoC for an advanced In-Memory evasion technique allowing to better hide injected shellcode's memory allocation fr…☆1,067Updated 2 years ago
- Original C Implementation of the Hell's Gate VX Technique☆981Updated 3 years ago
- Nidhogg is an all-in-one simple to use windows kernel rootkit.☆1,863Updated 3 months ago
- Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted fi…☆637Updated 10 months ago
- Open-Source Shellcode & PE Packer☆1,874Updated 11 months ago
- Native API header files for the System Informer project.☆1,090Updated 4 months ago
- A Windows kernel-mode rootkit that abuses legitimate communication channels to control a machine.☆689Updated 4 years ago
- C/C++ source obfuscator for antivirus bypass☆1,015Updated 2 years ago
- Dynamic unpacker based on PE-sieve☆688Updated last week
- LoadLibrary for offensive operations☆1,111Updated 3 years ago