kargisimos / detenv
A small and portable Windows C library for sandbox detection
☆33Updated last year
Alternatives and similar repositories for detenv:
Users that are interested in detenv are comparing it to the libraries listed below
- ☆46Updated last year
- lsassdump via RtlCreateProcessReflection and NanoDump☆77Updated 3 months ago
- Create Anti-Copy DRM Malware☆51Updated 5 months ago
- ☆80Updated 8 months ago
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆62Updated last month
- ☆48Updated 3 months ago
- Duplicate not owned Token from Running Process☆72Updated last year
- DFSCoerce exe revisited version with custom authentication☆38Updated last year
- ☆33Updated 2 months ago
- Section-based payload obfuscation technique for x64☆59Updated 5 months ago
- ☆92Updated 11 months ago
- malleable profile generator GUI for Havoc☆56Updated last year
- ☆10Updated last year
- ☆73Updated last year
- Secretsdump C# version only supporting local (live) operation☆48Updated last year
- To audit the security of read-only domain controllers☆114Updated last year
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆98Updated last year
- Situational Awareness script to identify how and where to run implants☆43Updated last month
- Winsocket for Cobalt Strike.☆99Updated last year
- in-process powershell runner for BRC4☆45Updated last year
- Creation and removal of Defender path exclusions and exceptions in C#.☆30Updated last year
- I have documented all of the AMSI patches that I learned till now☆69Updated last year
- ☆29Updated last year
- Work, timer, and wait callback example using solely Native Windows APIs.☆84Updated 11 months ago
- a short C code POC to gain persistence and evade sysmon event code registry (creation, update and deletion) REG_NOTIFY_CLASS Registry Cal…☆51Updated last year
- The program uses the Windows API functions to traverse through directories and locate DLL files with RWX section☆98Updated last year
- ☆62Updated 11 months ago
- A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders Stardust☆83Updated 9 months ago
- ☆79Updated 9 months ago
- C++ Staged Shellcode Loader with Evasion capabilities.☆73Updated 3 months ago