timwhitez / killProcessPOC
use aswArPot.sys to kill process
☆67Updated 2 years ago
Alternatives and similar repositories for killProcessPOC:
Users that are interested in killProcessPOC are comparing it to the libraries listed below
- Use COM Component Bypass UAC,Dll Version☆33Updated 3 years ago
- Load shellcode via syscall☆47Updated 3 years ago
- Beacon Object File implementation of pwn1sher's KillDefender☆66Updated 2 years ago
- ☆40Updated last year
- (Hellsgate|Halosgate|Tartarosgate)+Spoofing-Gate. Ensures that all systemcalls go through ntdll.dll☆43Updated 3 years ago
- A wrapper of ldap_shell.py module which in ntlmrelayx☆61Updated 2 years ago
- CLIPBRDWNDCLASS process injection technique(BOF) - execute beacon shellcode in callback☆68Updated 2 years ago
- ShellCodeLoader via DInvoke☆54Updated 3 years ago
- Bypass EDR Create TaskServers☆36Updated 2 years ago
- UAC_wenpon☆48Updated 3 years ago
- A Mimikatz For Only Extracting Login Passwords.(Bypasses Most AV's)☆57Updated 3 years ago
- Re-implement cmd.exe using windows api☆48Updated 2 years ago
- Golang implementation of Hellsgate + Halosgate/Tartarosgate. Ensures that all systemcalls go through ntdll.dll;☆32Updated 2 years ago
- ☆91Updated 3 years ago
- more conveniently Visual-Studio-BOF-template☆61Updated last year
- ☆26Updated last year
- Beacon compiled using clang☆63Updated 2 years ago
- dump lsass tool☆39Updated 2 years ago
- vehsyscall:a syscall project that may bypass EDR☆54Updated last year
- ReturnGate, just like HellsGate.☆66Updated 2 years ago
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆31Updated 2 years ago
- cmd2shellcode☆78Updated 3 years ago
- Cobalt Strike Beacon Object File (BOF) that uses LogonUserSSPI API to perform kerberos-based password spray☆44Updated 2 years ago
- Fork & modify of Wireguard's Memmod☆32Updated last year
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆32Updated 2 years ago
- ☆75Updated 3 years ago
- CVE-2021-42287/CVE-2021-42278 exploits in powershell☆37Updated 2 years ago
- ☆32Updated 4 years ago
- ☆100Updated 2 years ago
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆42Updated 10 months ago