komomon / Invoke-Obfuscation-BypassLinks
powershell免杀,Invoke-Obfuscation-Bypass分析和修改
☆16Updated 2 years ago
Alternatives and similar repositories for Invoke-Obfuscation-Bypass
Users that are interested in Invoke-Obfuscation-Bypass are comparing it to the libraries listed below
Sorting:
- Take a screenshot without injection for Cobalt Strike☆199Updated 2 years ago
- Shellcode Reductio Entropy Tools☆71Updated last year
- Red team tool designed for quickly identifying hijackable programs, evading antivirus software, and EDR (Endpoint Detection and Response)…☆73Updated 6 months ago
- Cobalt Strike BOF that Add a user to localgroup by samr☆131Updated 2 years ago
- ☆55Updated last year
- ☆24Updated 2 years ago
- powershell免杀混淆器,简单有效。A simple and effective powershell obfuscaiton tool bypass Anti-Virus☆17Updated 2 years ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆90Updated 2 years ago
- xiebroC2 plugin☆53Updated 6 months ago
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆78Updated 2 years ago
- Binary Hollowing☆78Updated 11 months ago
- ☆37Updated 2 years ago
- mssqlproxy python3.5+ 并修复bug☆64Updated 2 years ago
- Cobalt Strike BOF that Add an admin user☆78Updated 2 years ago
- Zerologon exploit with restore DC password automatically☆140Updated last year
- This is a third party agent for Havoc C2 written in golang.☆58Updated last year
- ☆49Updated 2 years ago
- 域内普通域用户权限查找域内所有计算机上登录的用户☆151Updated 2 years ago
- more conveniently Visual-Studio-BOF-template☆69Updated last year
- Invoke-Obfuscation-Bypass + PS2EXE 过主流杀软☆54Updated 4 years ago
- If you only have hash, you can still operate exchange☆76Updated 3 years ago
- 主要用于隐藏进程真实路径,进程带windows真签名☆114Updated 10 months ago
- 过木马免杀制作器☆55Updated last year
- Callback Function Loader Implemented in Go☆141Updated last year
- 将PE文件进行AES加密,然后从远程拉取加载内存中实现免杀☆36Updated 2 years ago
- 重构Beacon☆161Updated last year
- Loader Pre-Technology, Main thread hijacking without using API, get ntdll and kernel32 handle without peb. 加载器前置技术,不使用API进行主线程劫持,不使用PEB…☆81Updated last month
- Get password/cookie/history from browser and use devtools protocol to bypass edr monitoring☆62Updated 4 months ago
- Cobalt Strike 二开项目☆186Updated 2 years ago
- 通过C/C++实现的 Windows RID Hijacking persistence technique (RID劫持 影子账户 账户克隆).☆83Updated 3 years ago