This program detects if any security software (AV, EDR, XDR, firewall, etc.) is running on the system. The program searches the list of running processes and compares their names with a predefined list of known security software processes.
☆48Sep 21, 2026Updated this week
Alternatives and similar repositories for av_detect
Users that are interested in av_detect are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- GitHubApi CVE Poc监控工具☆13Jan 23, 2026Updated 8 months ago
- Golang implement winrm client with pass the hash☆33Apr 29, 2024Updated 2 years ago
- This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hol…☆73Feb 11, 2024Updated 2 years ago
- CIA UAC bypass implementation that utilizes elevated COM object to write to System32 and an auto-elevated process to execute as administr…☆14Dec 30, 2023Updated 2 years ago
- Evasive loader to bypass static detection☆58Jan 15, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- crystal palace + draugr function hook definition generator☆17Jan 27, 2026Updated 7 months ago
- Attack Active Directory Trusts with a single tool☆13Jan 15, 2025Updated last year
- XOR 加密 分离免杀☆67Dec 15, 2023Updated 2 years ago
- SafeHarbor revamped with Direct Syscalls using InlineWhispers3☆14Feb 16, 2026Updated 7 months ago
- ☆31Sep 1, 2023Updated 3 years ago
- A tool to assist DLL hijacking via the Havoc GUI☆13Jan 9, 2024Updated 2 years ago
- 在线安软识别☆11Aug 6, 2025Updated last year
- Basic Psexec clone, but in golang.☆16Jul 2, 2022Updated 4 years ago
- Kill Everything AV/EDR☆26Nov 18, 2024Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Bypassing AV, EDR, Application Whitelisting and ASR Rules☆13Apr 18, 2023Updated 3 years ago
- CaveCarver - PE backdooring tool which utilizes and automates code cave technique☆231Apr 17, 2023Updated 3 years ago
- A multi coroutine concurrent batch URL survival detection tool written in Go, with concurrency determined by CPU by default.一个go编写的多协程并发批…☆12Jan 9, 2024Updated 2 years ago
- Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle…☆15Jan 7, 2023Updated 3 years ago
- some AV / EDR / analysis studies☆10May 21, 2023Updated 3 years ago
- A C#-implemented malware that dynamically modifies its own hash upon each execution to evade detection.☆14Feb 3, 2025Updated last year
- Solemn is a lightweight command-line tool for Windows that automates adding drivers to the HVCI (HvciDisallowedImages) custom blocklist☆25May 2, 2026Updated 4 months ago
- template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.☆106Jan 10, 2026Updated 8 months ago
- NimReflectiveLoader is a Nim-based tool for in-memory DLL execution using Reflective DLL Loading.☆32Jan 21, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆102Mar 27, 2025Updated last year
- ☆42Feb 18, 2025Updated last year
- demo unhooking functions in ntdll☆27Jul 15, 2025Updated last year
- 一个简单的指纹识别小工具☆21Oct 23, 2023Updated 2 years ago
- 分割小工具,可分割木马,一键生成写入、合并、追加命令☆162Jan 5, 2024Updated 2 years ago
- EDR/AV Simulation for Malware Development☆13Oct 21, 2023Updated 2 years ago
- Research into WinSxS binaries and finding hijackable paths☆31Jul 30, 2026Updated last month
- Research of modifying exported function names at runtime (C/C++, Windows)☆18May 28, 2024Updated 2 years ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆50May 8, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Automated DLL Sideloading Tool With EDR Evasion Capabilities☆508Dec 19, 2023Updated 2 years ago
- bring your own clean ntdll (or other MS dlls)☆28Jul 14, 2025Updated last year
- Get sql server connection configuration information☆27Aug 26, 2024Updated 2 years ago
- vehsyscall:a syscall project that may bypass EDR☆60Mar 1, 2024Updated 2 years ago
- Launches a limited shell using PowerShell Runspaces with an optional AMSI Bypass. Does not invoke Powershell.exe☆13Dec 11, 2023Updated 2 years ago
- Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal …☆101Jan 2, 2026Updated 8 months ago
- A lexer and parser for Sleep☆21Feb 20, 2026Updated 7 months ago