psbazx / PE_shellLinks
简单的二进制加密壳
☆13Updated 4 years ago
Alternatives and similar repositories for PE_shell
Users that are interested in PE_shell are comparing it to the libraries listed below
Sorting:
- 绕过卡巴斯基主动防御,加载驱动,unhook所有ssdt hook及shadow ssdt hook☆37Updated 9 years ago
- PEBFake(修改PEB 伪装当前进程路径、参数等)☆51Updated 4 years ago
- Windows CVE主防(HIPS/HIDS)☆55Updated 4 years ago
- A poc of embedding x64 code into x86 PE file☆19Updated 5 years ago
- 反射式注入☆28Updated 6 years ago
- 安全卫士r3工具集☆37Updated 5 years ago
- 卓然主动防御源码(可执行文件+完整源码+完整作品报告)☆15Updated 6 years ago
- 基于UC的启发式杀毒引擎[还没做完]☆34Updated 4 years ago
- https://key08.com/index.php/2021/10/19/1375.html☆68Updated 3 years ago
- 内存加载DLL 支持X86和X64(Memory PELoader Support X86 and X64)☆34Updated last year
- shellcode注入测试工具☆50Updated 5 years ago
- For Example. See Miro's Blog☆30Updated 2 years ago
- windows 黑客技术编程技术详解配套的代码资源☆15Updated 5 years ago
- win32kbase!NtDCompositionCommitSynchronizationObject and win32kbase!NtGdiGetCertificate☆16Updated 3 years ago
- 沙箱测试,测评国内常见沙箱的代码与结论☆101Updated 3 years ago
- WINDOWS黑客編程技術詳解 [Windows-Hack-Programming backup]☆44Updated 6 years ago
- fork from A-Protect☆10Updated 6 years ago
- ida提取特征码脚本☆56Updated 5 years ago
- Call NtCreateUserProcess directly as normal.☆71Updated 3 years ago
- 编译时混淆字符串,以确保生成的二进制PE不会暴漏明文字符串。(C++ 14 及以上)☆26Updated 3 years ago
- 《Windows内核编程》学习☆57Updated 4 years ago
- 滴水壳(傀儡进程)☆9Updated 4 years ago
- sc4cpp is a shellcode framework based on C++☆90Updated 3 years ago
- windows rpc 使用MIDL+RPC实现HelloWorld☆23Updated 7 years ago
- 过去写的一些Windows安全研究相关代码☆135Updated 6 years ago
- HTTPS GET RAT and Memory Loader☆25Updated 2 weeks ago
- 笔者的在原作者池风水利用工具(以下简称工具)基础上进行二次开发,新增了全自动获取内核调试模块符号的偏移量及配置参数和不同漏洞利用方式优化等功能, 解决了不同Windows版本适配问题,工具包括适配驱动和利用程序两部分组 成,实现了在Windows 10 19H1之后任意版本包…☆77Updated 3 years ago
- WIN64驱动编程基础教程-源码 作者:胡文亮☆87Updated 7 years ago
- ☆26Updated 7 years ago
- windows inlinehook R3 R0☆11Updated 7 years ago