rbmm / PfxViewer
☆10Updated 7 months ago
Related projects ⓘ
Alternatives and complementary repositories for PfxViewer
- ☆27Updated 4 months ago
- Repository of Microsoft Driver Block Lists based off of OS-builds☆39Updated 7 months ago
- API Hammering with C++20☆34Updated 2 years ago
- ☆25Updated last month
- Hooked create process injection for meterpreter☆23Updated 3 years ago
- really ?☆12Updated 8 months ago
- Self Delete DLL☆23Updated 9 months ago
- Process Injection: APC Injection☆27Updated 3 years ago
- Research into removing strings & API call references at compile-time (Anti-Analysis)☆24Updated 5 months ago
- Research of modifying exported function names at runtime (C/C++, Windows)☆16Updated 5 months ago
- Small tool to play with IOCs caused by Imageload events☆37Updated last year
- This POC provides the possibilty to execute x86 shellcode in form of a .bin file based on x86 inline assembly☆17Updated last year
- ☆22Updated 6 months ago
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies☆32Updated 2 years ago
- ☆27Updated last year
- ☆15Updated 3 months ago
- convert compatible dlls to shellcode with sRDI. I don't remember where this came from, so if you recognize the code, let me know and I'll…☆12Updated 7 months ago
- Files for http://blog.deniable.org/posts/windows-callbacks/☆12Updated last year
- Bypass UAC elevation on Windows 8 (build 9600) & above.☆53Updated 2 years ago
- Simple PoC to locate hooked functions by EDR in ntdll.dll☆32Updated last year
- ☆45Updated 3 years ago
- Dangling COM Keys Finder☆14Updated 3 years ago
- A pure C version of SymProcAddress☆23Updated 8 months ago
- Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle…☆15Updated last year
- Remove API hooks from a Beacon process.☆12Updated 3 years ago
- ☆21Updated 6 months ago
- Your NTDLL vaccine from modern direct syscall methods.☆35Updated 2 years ago