Process Hollowing for 32 bit and 64 bit
☆79Nov 10, 2017Updated 8 years ago
Alternatives and similar repositories for ProcessHollowing32-64
Users that are interested in ProcessHollowing32-64 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A small commented POC for removing API hooks placed by AV/EDR.☆34Jun 12, 2020Updated 6 years ago
- An implementation of the Process Hollowing technique.☆17Dec 13, 2020Updated 5 years ago
- v1版完成对PE头,区段,输入表的解析☆11Apr 16, 2018Updated 8 years ago
- Register a callback from a Manually mapped kernel module☆16Feb 1, 2022Updated 4 years ago
- Executes 64bit code from a 32bit process☆239Jul 23, 2017Updated 8 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Remote PE reflective injection with a simple reflective loader☆33Jun 28, 2019Updated 7 years ago
- An example of PE hollowing injection technique☆27Jun 28, 2019Updated 7 years ago
- ZwProcessHollowing is a x64 process hollowing project which uses direct systemcalls, dll unhooking and RC4 payload decryption☆97Mar 23, 2023Updated 3 years ago
- GUI Application in C# to run and disassemble shellcode☆35Aug 3, 2017Updated 8 years ago
- Convert native dll to shellcode, and support exported function☆24Feb 10, 2021Updated 5 years ago
- AES Crypter for Society of Engineers Remote Access Trojan (RAT) Project Lead: Derek Ta Security Programmer: Taegan Warren☆16Nov 29, 2014Updated 11 years ago
- ☆21Mar 24, 2015Updated 11 years ago
- Simple remote administration tool. Written in c++ and MASM.☆18May 16, 2018Updated 8 years ago
- User-mode hook bypassing method☆33Aug 26, 2016Updated 9 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Various Crypter Project☆55Feb 26, 2014Updated 12 years ago
- ☆11Feb 19, 2023Updated 3 years ago
- execute a PE in the address space of another PE aka process hollowing☆58Dec 2, 2021Updated 4 years ago
- This is a simple tool to remove the "Rich" header from binaries (EXE or DLL files) created by M$ development tools.☆33Feb 3, 2021Updated 5 years ago
- ☆154Aug 17, 2020Updated 5 years ago
- A dynamic VMP dumper and import fixer, powered by VTIL.☆45Sep 3, 2020Updated 5 years ago
- ☆37May 9, 2019Updated 7 years ago
- With this RunPE you can easily inject your payload in any x86 or x64 program.☆16Jun 3, 2019Updated 7 years ago
- GCC生成Shellcode框架☆18Apr 7, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Simple runtime crypter in C++.☆43Dec 8, 2014Updated 11 years ago
- Hook system calls, context switches, page faults and more.☆33Jul 25, 2019Updated 6 years ago
- Inject unsigned DLL into Protected Process Light (PPL)☆42May 8, 2025Updated last year
- Windows Simple Process Logger implemented as driver☆19Oct 27, 2017Updated 8 years ago
- This is a sample that shows how to leverage SetThreadContext for DLL injection☆85Sep 4, 2017Updated 8 years ago
- A modified RunPE (process hollowing) technique avoiding the usage of SetThreadContext by appending a TLS section which calls the original…☆96Sep 26, 2019Updated 6 years ago
- Evasive Process Hollowing Techniques☆143Aug 16, 2020Updated 5 years ago
- a program to detect reflective dll injection on a live machine☆77Dec 12, 2015Updated 10 years ago
- adversarial machine learning for anti-malware software☆12May 17, 2018Updated 8 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆19Aug 19, 2021Updated 4 years ago
- Convert Python Code To C++ Code☆16Apr 11, 2023Updated 3 years ago
- ☆42Mar 7, 2017Updated 9 years ago
- A modern c++ implementation of windows heavens gate☆245Sep 19, 2020Updated 5 years ago
- ☆14Apr 12, 2024Updated 2 years ago
- [C#]Main.exe < - > [C_DLL] < - > [C_KERNEL] = Memory_Editor via Kernel☆33Aug 13, 2019Updated 6 years ago
- Helper library for x86 programs that runs under WOW64 layer on x64 versions of Microsoft Windows operating systems.☆1,010Jan 17, 2023Updated 3 years ago