txluck / xor-shellcode-and-ppid-spoofingLinks
异或shellcode和ppid欺骗免杀
☆14Updated 3 years ago
Alternatives and similar repositories for xor-shellcode-and-ppid-spoofing
Users that are interested in xor-shellcode-and-ppid-spoofing are comparing it to the libraries listed below
Sorting:
- ☆49Updated 2 years ago
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆31Updated 3 years ago
- command execute without 445 port☆52Updated 3 years ago
- 在权限足够的情况下弹出system权限的cmd命令行,包含exe和dll两种文件类型,可用于一些可能存在本地提权漏洞的测试。☆33Updated 3 years ago
- Bypass EDR Create TaskServers☆37Updated 2 years ago
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆77Updated 2 years ago
- ☆15Updated last year
- ☆31Updated last year
- Enable RDP and set firewall by Windows API.☆20Updated 3 years ago
- CrackMapExec extension module/protocol support☆42Updated last year
- Cobalt Strike BOF that Add an admin user☆77Updated 2 years ago
- ☆34Updated 5 months ago
- ☆22Updated last year
- Invoke-Obfuscation-Bypass + PS2EXE 过主流杀软☆54Updated 3 years ago
- Lsass memory dump.☆53Updated last year
- kill windows log☆45Updated last year
- CVE-2020-1472 C++☆83Updated 2 years ago
- 将PE文件进行AES加密,然后从远程拉取加载内存中实现免杀☆36Updated 2 years ago
- 密码收集☆58Updated 3 years ago
- 一个2020 年练手的基于gin框架搞的在线免杀平台,支持后台管理,邀请码注册等☆38Updated 10 months ago
- ☆24Updated 2 years ago
- dump lsass☆37Updated 3 years ago
- 利用EFSRPC协议批量探测出网☆66Updated last year
- 免杀计划任务进行权限维持,过主流杀软。 A schtask tool bypass anti-virus☆68Updated 2 years ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆49Updated 2 years ago
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆35Updated 3 weeks ago
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user; Adding the sam_the_admin_maq when MachineAccoun…☆22Updated last year
- golang+c#乱写了一个基于http的垃圾远控(支持团队协同作战,功能很少)(三端)☆43Updated 3 years ago
- 重构Beacon☆15Updated 11 months ago
- 导出coremail联系人☆18Updated 2 years ago