komomon / Invoke-Obfuscation-BypassLinks
powershell免杀,Invoke-Obfuscation-Bypass分析和修改
☆17Updated 2 years ago
Alternatives and similar repositories for Invoke-Obfuscation-Bypass
Users that are interested in Invoke-Obfuscation-Bypass are comparing it to the libraries listed below
Sorting:
- Shellcode Reductio Entropy Tools☆74Updated 2 years ago
- Take a screenshot without injection for Cobalt Strike☆201Updated 2 years ago
- powershell免杀混淆器,简单有效。A simple and effective powershell obfuscaiton tool bypass Anti-Virus☆19Updated 3 years ago
- ☆24Updated 3 years ago
- Get password/cookie/history from browser and use devtools protocol to bypass edr monitoring☆62Updated 8 months ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆88Updated 2 years ago
- ☆56Updated 2 years ago
- Cobalt Strike BOF that Add a user to localgroup by samr☆132Updated 3 years ago
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆78Updated 2 years ago
- ☆49Updated 2 years ago
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆34Updated 3 years ago
- ☆36Updated 2 years ago
- 过木马免杀制作器☆55Updated 2 years ago
- xiebroC2 plugin☆58Updated 10 months ago
- Cobalt Strike BOF that Add an admin user☆78Updated 3 years ago
- This is a third party agent for Havoc C2 written in golang.☆57Updated last year
- 将PE文件进行AES加密,然后从远程拉取加载内存中实现免杀☆37Updated 2 years ago
- Invoke-Obfuscation-Bypass + PS2EXE 过主流杀软☆54Updated 4 years ago
- Golang 写的免杀框架,通过系统调用等手法bypass AV/EDR☆23Updated last year
- ☆27Updated 3 years ago
- ☆31Updated 2 years ago
- That guy uses python to bypass anti-virus, goddamn!基于python pyd的shellcode免杀绕过☆65Updated 2 years ago
- more conveniently Visual-Studio-BOF-template☆74Updated 2 years ago
- Zerologon exploit with restore DC password automatically☆140Updated last year
- 异或shellcode和ppid欺骗免杀☆14Updated 3 years ago
- XOR 加密 分离免杀☆67Updated 2 years ago
- Binary Hollowing☆89Updated last year
- CVE-2020-0787的简单回显☆33Updated 3 years ago
- ☆92Updated 4 years ago
- If you only have hash, you can still operate exchange☆78Updated 4 years ago