myzxcg / RealBlindingEDRLinks
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
☆1,172Updated last year
Alternatives and similar repositories for RealBlindingEDR
Users that are interested in RealBlindingEDR are comparing it to the libraries listed below
Sorting:
- darkPulse是一个用go编写的shellcode Packer,用于生成各种各样的shellcode loader,免杀火绒,360核晶等国内常见杀软。☆865Updated 11 months ago
- CPP AV/EDR Killer☆447Updated last year
- 一个手动或自动patch shellcode到二进制文件的免杀工具/A tool for manual or automatic patch shellcode into binary file oder to bypass AV.☆532Updated 4 months ago
- Alternative Shellcode Execution Via Callbacks☆1,637Updated 2 years ago
- New generation of wmiexec.py☆1,148Updated 4 months ago
- RedGuard is a C2 front flow control tool,Can avoid Blue Teams,AVs,EDRs check.☆1,525Updated last year
- SysWhispers on Steroids - AV/EDR evasion via direct system calls.☆1,513Updated last year
- CobaltStrike Beacon written in .Net 4 用.net重写了stager及Beacon,其中包括正常上线、文件管理、进程管理、令牌管理、结合SysCall进行注入、原生端口转发、关ETW等一系列功能☆727Updated 4 years ago
- 免杀,bypassav,免杀框架,nim,shellcode,使用nim编写的shellcode加载器☆667Updated 7 months ago
- Windows Elevation(持续更新)☆659Updated 3 years ago
- 牛屎花 一款基于WEB界面的远程主机管理工具☆855Updated 2 years ago
- Open repository for learning dynamic shellcode loading (sample in many programming languages)☆268Updated 2 months ago
- Use ICMLuaUtil to Bypass UAC!☆591Updated 5 years ago
- C2-下一代RAT☆466Updated last year
- Syscall Shellcode Loader (Work in Progress)☆1,223Updated last year
- HVNC for Cobalt Strike☆1,271Updated last year
- CobaltStrike beacon written in golang☆449Updated last year
- 🤖 Kill The Protected Process 🤖☆441Updated last year
- Hunts out CobaltStrike beacons and logs operator command output☆943Updated last year
- Windows 权限提升 BadPotato☆869Updated 5 years ago
- Some demos to bypass EDRs or AVs by 78itsT3@m☆357Updated 3 years ago
- Pillager是一个适用于后渗透期间的信息收集工具☆1,215Updated last year
- Windows Token Stealing Expert☆479Updated last year
- POCs for Shellcode Injection via Callbacks☆411Updated 4 years ago
- C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can…☆541Updated 4 years ago
- A Bypass Anti-virus Software Lateral Movement Command Execution Tool☆1,452Updated 8 months ago
- windows-rs shellcode loaders☆376Updated last year
- 免杀知识库 | 开源免杀木马效果测试 360 火绒 卡巴斯基 Microsoft Defender | 免杀工具汇总☆301Updated 3 months ago
- 绕3环的shellcode免杀框架☆573Updated 4 years ago
- Loading Remote AES Encrypted PE in memory , Decrypted it and run it☆985Updated 2 years ago