timwhitez / killProcessPOC
use aswArPot.sys to kill process
☆67Updated 2 years ago
Alternatives and similar repositories for killProcessPOC:
Users that are interested in killProcessPOC are comparing it to the libraries listed below
- Load shellcode via syscall☆47Updated 3 years ago
- A wrapper of ldap_shell.py module which in ntlmrelayx☆62Updated 2 years ago
- ShellCodeLoader via DInvoke☆53Updated 3 years ago
- Use COM Component Bypass UAC,Dll Version☆33Updated 3 years ago
- Beacon Object File implementation of pwn1sher's KillDefender☆66Updated 2 years ago
- (Hellsgate|Halosgate|Tartarosgate)+Spoofing-Gate. Ensures that all systemcalls go through ntdll.dll☆43Updated 2 years ago
- CLIPBRDWNDCLASS process injection technique(BOF) - execute beacon shellcode in callback☆67Updated 2 years ago
- A Mimikatz For Only Extracting Login Passwords.(Bypasses Most AV's)☆57Updated 3 years ago
- cmd2shellcode☆78Updated 3 years ago
- ☆39Updated last year
- ReturnGate, just like HellsGate.☆66Updated 2 years ago
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆41Updated last year
- more conveniently Visual-Studio-BOF-template☆58Updated last year
- Beacon compiled using clang☆63Updated 2 years ago
- CVE-2021-42287/CVE-2021-42278 exploits in powershell☆37Updated 2 years ago
- dump lsass tool☆39Updated 2 years ago
- Bypass EDR Create TaskServers☆36Updated 2 years ago
- dump lsass☆37Updated 2 years ago
- UAC_wenpon☆48Updated 3 years ago
- ☆26Updated last year
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆30Updated 2 years ago
- ☆30Updated last year
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆41Updated 9 months ago
- Silently Install Chrome Extension For Persistence☆49Updated 7 months ago
- Re-implement cmd.exe using windows api☆49Updated 2 years ago
- A simple hidden vnc.☆32Updated 4 years ago
- Amaterasu terminates, or inhibits, protected processes such as application control and AV/EDR solutions by leveraging the Sysinternals Pr…☆71Updated 11 months ago
- MSSQL CLR for pentest.☆54Updated last year
- Cobalt Strike Beacon Object File (BOF) that uses LogonUserSSPI API to perform kerberos-based password spray☆44Updated last year
- vehsyscall:a syscall project that may bypass EDR☆54Updated 11 months ago