hexsecteam / go-invoker-clrLinks
Good CLR Host with Native patchless AMSI Bypass
☆20Updated 8 months ago
Alternatives and similar repositories for go-invoker-clr
Users that are interested in go-invoker-clr are comparing it to the libraries listed below
Sorting:
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆78Updated 2 years ago
- command execute without 445 port☆57Updated 3 years ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆55Updated 2 years ago
- Beacon Object File implementation of pwn1sher's KillDefender☆67Updated 3 years ago
- ☆31Updated 2 years ago
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆34Updated 3 years ago
- ☆36Updated 10 months ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆90Updated 2 years ago
- Cobalt Strike BOF that Add a user to localgroup by samr☆132Updated 3 years ago
- 在cobaltstrike中使用的bof工具集,收集整理验证好用的bof。☆17Updated 4 years ago
- MSSQL CLR for pentest.☆56Updated 2 years ago
- Enable RDP and set firewall by Windows API.☆21Updated 3 years ago
- ☆49Updated 2 years ago
- Cobalt Strike BOF that Add an admin user☆78Updated 3 years ago
- ASPX ShellCode Loader☆54Updated 2 years ago
- Get password/cookie/history from browser and use devtools protocol to bypass edr monitoring☆62Updated 9 months ago
- ☆26Updated 9 months ago
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆34Updated 6 months ago
- A method of bypassing EDR's active projection DLL's by preventing entry point exection☆24Updated 4 years ago
- A tool written in golang which compress using UPX and patch it with the provided PE file to make "UPX -d" flag impossible to decompress a…☆27Updated last year
- 一个2020年练手的基于gin框架搞的在线免杀平台,支持后台管理,邀请码注册等☆39Updated last year
- 内存加载FRP☆10Updated 2 years ago
- ☆44Updated 2 years ago
- ☆46Updated 4 years ago
- CVE-2020-1472 C++☆84Updated 3 years ago
- PortBender修改为exe版本☆29Updated 2 years ago
- ☆15Updated 2 years ago
- A Mimikatz For Only Extracting Login Passwords.(Bypasses Most AV's)☆59Updated 3 years ago
- 将PE文件进行AES加密,然后从远程拉取加载内存中实现免杀☆37Updated 2 years ago
- 在权限足够的情况下弹出system权限的cmd命令行,包含exe和dll两种文件类型,可用于一些可能存在本地提权漏洞的测试。☆33Updated 3 years ago