Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
☆71Mar 16, 2026Updated last week
Alternatives and similar repositories for donut_ollvm
Users that are interested in donut_ollvm are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- can convert EXE/DLL into position-independent shellcode☆41Feb 1, 2026Updated last month
- 主要用于隐藏进程真实路径,进程带windows真签名☆119Oct 15, 2024Updated last year
- A BOF/COFF loader implemented in Go and CGO.☆23Jan 16, 2024Updated 2 years ago
- 向日葵 密码提取工具☆13Sep 10, 2024Updated last year
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆203May 28, 2024Updated last year
- 一个手动或自动patch shellcode到二进制文件的免杀工具/A tool for manual or automatic patch shellcode into binary file oder to bypass AV.☆564May 30, 2025Updated 9 months ago
- Get sql server connection configuration information☆28Aug 26, 2024Updated last year
- Golang implement winrm client with pass the hash☆32Apr 29, 2024Updated last year
- 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》☆161Oct 27, 2024Updated last year
- ☆31Oct 23, 2023Updated 2 years ago
- 白文件patch☆26Aug 14, 2024Updated last year
- vehsyscall:a syscall project that may bypass EDR☆62Mar 1, 2024Updated 2 years ago
- 添加计划任务方法集合☆310Aug 6, 2023Updated 2 years ago
- ☆94May 26, 2023Updated 2 years ago
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆138Dec 26, 2023Updated 2 years ago
- A tool written in golang which compress using UPX and patch it with the provided PE file to make "UPX -d" flag impossible to decompress a…☆31Jan 2, 2025Updated last year
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆181Aug 3, 2024Updated last year
- 使用Visral Studio开发ShellCode☆239Oct 11, 2023Updated 2 years ago
- 腾讯安全沙龙 一 二 三 期PPT集合☆19May 24, 2025Updated 10 months ago
- Take a screenshot without injection for Cobalt Strike☆203Jun 7, 2023Updated 2 years ago
- 寻找可利用的白文件☆559Aug 18, 2025Updated 7 months ago
- 利用EFSRPC协议批量探测出网☆67Oct 12, 2023Updated 2 years ago
- 抓取主机保存的RDP凭据☆17Dec 26, 2020Updated 5 years ago
- exchange接口爆破|邮箱爆破☆20Sep 19, 2024Updated last year
- 用于绕 过杀软的加载器☆28Oct 13, 2025Updated 5 months ago
- ☆51Aug 28, 2021Updated 4 years ago
- Plugin Driven Remote Administration Tool (Unsupported)☆14Sep 23, 2015Updated 10 years ago
- ☆15Jul 13, 2024Updated last year
- 一款基于PE Patch技术的后渗透免杀工具,主要支持x64☆355Mar 5, 2025Updated last year
- Research into COM☆19Jan 25, 2020Updated 6 years ago
- Fileless atexec, no more need for port 445☆406Mar 28, 2024Updated last year
- 重构Beacon☆165Aug 19, 2024Updated last year
- ☆22Jan 15, 2025Updated last year
- Curated list of public Beacon Object Files(BOFs) build in as submodules for easy cloning☆138Dec 7, 2025Updated 3 months ago
- ☆46Dec 5, 2023Updated 2 years ago
- 通过生成不同hash的ico并写入程序中,实现批量bypass360QVM☆259Aug 10, 2023Updated 2 years ago
- CVE-2020-1472 C++☆84Sep 2, 2022Updated 3 years ago
- Call the CLR interface from memory to load powershell, process-less powershell☆15Sep 7, 2023Updated 2 years ago
- Binary Hollowing☆95Sep 10, 2024Updated last year