Hollow Process / Dynamic Forking / RunPE injection technique implemented in Python
☆55Jun 18, 2021Updated 5 years ago
Alternatives and similar repositories for HollowProcess
Users that are interested in HollowProcess are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆20Aug 12, 2014Updated 12 years ago
- ☆13Sep 22, 2019Updated 7 years ago
- PE Infector/Cryptor source code☆17Apr 30, 2017Updated 9 years ago
- ☆91Apr 17, 2021Updated 5 years ago
- CVE-2017-4878 Samples - http://blog.talosintelligence.com/2018/02/group-123-goes-wild.html☆17Feb 5, 2018Updated 8 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Proof of Concept code for CVE-2020-0728☆46Feb 12, 2020Updated 6 years ago
- Process Hollowing Detection on a live system☆13Nov 11, 2017Updated 8 years ago
- Create a C++ PE which loads an XTEA-crypted .NET PE shellcode in memory.☆16Sep 29, 2018Updated 7 years ago
- HTTP/HTTPS/DNS inspector (windows driver)☆25Feb 20, 2019Updated 7 years ago
- A tool for scanning registery key permissions. Find where non-admins can create symbolic links.☆43Oct 30, 2019Updated 6 years ago
- 对windows-api内容进行自动审查和过滤监控☆14May 30, 2017Updated 9 years ago
- Windows CIFS/SMB packet generation and SMB networking library☆12Aug 25, 2020Updated 6 years ago
- A Windows Remote Administration Tool in Visual Basic with UNC paths☆22Apr 19, 2019Updated 7 years ago
- ☆13Jun 1, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- POC of code that downloads and executes shellcode in memory.☆80May 25, 2014Updated 12 years ago
- Packed Malware Analyzer (PACKMAN)☆12Jan 31, 2016Updated 10 years ago
- Thanks to @d35ha☆12Aug 16, 2021Updated 5 years ago
- A DLL Injector written in Python with no dependencies.☆22Sep 12, 2023Updated 3 years ago
- This tool allows you to stealthily inject a DLL into a process.☆14Jul 11, 2015Updated 11 years ago
- Simple Process Hollowing in C#☆68Oct 23, 2017Updated 8 years ago
- CVE-2019-0708 - BlueKeep (RDP)☆40Jun 14, 2020Updated 6 years ago
- IDPS & SandBox & AntiVirus STEALTH KILLER. MorphAES is the world's first polymorphic shellcode engine, with metamorphic properties and ca…☆324Jun 25, 2022Updated 4 years ago
- Asynchronous named pipe module for PowerShell☆21May 30, 2016Updated 10 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- leaking net-ntlm with webdav☆28Feb 23, 2021Updated 5 years ago
- DLL Injection tool to unlock guest VMs☆238Nov 14, 2012Updated 13 years ago
- RDP Credential Provider☆13Oct 29, 2025Updated 10 months ago
- A simple parser(library) which extracts shimcache data from windows.☆15May 20, 2019Updated 7 years ago
- Persistent through COM Hijacking☆23Jan 15, 2019Updated 7 years ago
- ☆133Dec 15, 2019Updated 6 years ago
- CVE-2020-5837 exploit☆39May 13, 2020Updated 6 years ago
- This project uses the .NET framework to bypass Antivirus solutions.☆29Mar 24, 2013Updated 13 years ago
- execute a PE in the address space of another PE aka process hollowing☆57Dec 2, 2021Updated 4 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Windows log and threat hunting with powershell☆16Dec 11, 2020Updated 5 years ago
- An attempt at Process Doppelgänging☆181Jul 30, 2026Updated last month
- Allow a Go process to dynamically load .NET assemblies☆148Mar 28, 2020Updated 6 years ago
- Aurora Remote Administration Tool☆20Apr 16, 2018Updated 8 years ago
- Bypass AMSI and Executing PowerShell scripts from C# - using CyberArk's method to bypass AMSI☆29Feb 22, 2020Updated 6 years ago
- Windows kernel-mode callbacks tutorial driver☆46Aug 8, 2016Updated 10 years ago
- ☆92Nov 16, 2018Updated 7 years ago