nand0san / av_detectView external linksLinks
This program detects if any security software (AV, EDR, XDR, firewall, etc.) is running on the system. The program searches the list of running processes and compares their names with a predefined list of known security software processes.
☆50Jan 13, 2026Updated last month
Alternatives and similar repositories for av_detect
Users that are interested in av_detect are comparing it to the libraries listed below
Sorting:
- GitHubApi CVE Poc监控工具☆14Jan 23, 2026Updated 3 weeks ago
- This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hol…☆71Feb 11, 2024Updated 2 years ago
- Attack Active Directory Trusts with a single tool☆14Jan 15, 2025Updated last year
- 在线安软识别☆12Aug 6, 2025Updated 6 months ago
- Evasive loader to bypass static detection☆59Jan 15, 2024Updated 2 years ago
- Golang implement winrm client with pass the hash☆32Apr 29, 2024Updated last year
- ☆28Sep 1, 2023Updated 2 years ago
- Basic Psexec clone, but in golang.☆16Jul 2, 2022Updated 3 years ago
- A tool to assist DLL hijacking via the Havoc GUI☆12Jan 9, 2024Updated 2 years ago
- A C#-implemented malware that dynamically modifies its own hash upon each execution to evade detection.☆17Feb 3, 2025Updated last year
- XOR 加密 分离免杀☆67Dec 15, 2023Updated 2 years ago
- Kill Everything AV/EDR☆27Nov 18, 2024Updated last year
- CIA UAC bypass implementation that utilizes elevated COM object to write to System32 and an auto-elevated process to execute as administr…☆14Dec 30, 2023Updated 2 years ago
- Research into WinSxS binaries and finding hijackable paths☆30Dec 7, 2025Updated 2 months ago
- demo unhooking functions in ntdll☆28Jul 15, 2025Updated 6 months ago
- From C to binary shellcode converter.☆52Nov 11, 2025Updated 3 months ago
- Modern PIC implant for Windows (64 & 32 bit)☆105Jul 23, 2025Updated 6 months ago
- CaveCarver - PE backdooring tool which utilizes and automates code cave technique☆233Apr 17, 2023Updated 2 years ago
- ApexLdr is a DLL Payload Loader written in C☆116Jul 17, 2024Updated last year
- 一个简单的指纹识别小工具☆21Oct 23, 2023Updated 2 years ago
- ☆42Feb 18, 2025Updated 11 months ago
- shell code example☆67Dec 12, 2025Updated 2 months ago
- Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal …☆88Jan 2, 2026Updated last month
- Active Directory share enumeration tool☆12Apr 28, 2025Updated 9 months ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆103Mar 27, 2025Updated 10 months ago
- BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)☆195Feb 6, 2025Updated last year
- Huffman Coding in Shellcode Obfuscation & Dynamic Indirect Syscalls Loader.☆282Apr 6, 2025Updated 10 months ago
- 分割小工具,可分割木马,一键生成写入、合并、追加命令☆166Jan 5, 2024Updated 2 years ago
- kill windows log☆45Mar 26, 2024Updated last year
- lineadd 渗透测试字典管理工具, 让字典管理生活轻松一点。Penetration test dictionary management tool, make dictionary management life a little easier.☆27Aug 19, 2023Updated 2 years ago
- A Crystal Palace shared library to resolve & perform syscalls☆56Oct 29, 2025Updated 3 months ago
- Executing Kernel Routines via Syscall Table Hijack (Kernel Code Execution)☆57Jun 15, 2025Updated 7 months ago
- 免杀☆12May 6, 2024Updated last year
- A small experiment on assigning a processes threads a specific CPU and then blocking it with a high priority thread☆30Sep 24, 2025Updated 4 months ago
- Beacon Debugger☆55Oct 28, 2024Updated last year
- Windows Service with the implementation of the Process hollowing technique to run shellcode☆14Jul 20, 2023Updated 2 years ago
- ☆17Jun 16, 2025Updated 7 months ago
- Bypassing AV, EDR, Application Whitelisting and ASR Rules☆13Apr 18, 2023Updated 2 years ago
- A step-by-step walkthrough of how to write a Client and a Driver to communicate with each other and boost the priority of a thread.☆17Dec 12, 2023Updated 2 years ago