免杀
Stop Defender Service using C# via Token Impersonation
Some demos to bypass EDRs or AVs by 78itsT3@m
GetProcAddressByHash/remap/full dll unhooking/Tartaru's Gate/Spoofing Gate/universal/Perun's Fart/Spoofing-Gate/EGG/RecycledGate/syswhisper/RefleXXion golang implementation
RedGuard is a C2 front flow control tool,Can avoid Blue Teams,AVs,EDRs check.
ShellCode_Loader - Msf&CobaltStrike免杀ShellCode加载器、Shellcode_encryption - 免杀Shellcode加密生成工具,目前测试免杀360&火绒&电脑管家&Windows Defender(其他杀软未测试)。
DomainFronting(aliyun)远程加载shellcode,远程获取shellcode使用aes动态加密传输数据
将dll exe 等转成shellcode 最后输出exe 可定制加载器模板 支持白文件的捆绑 shellcode 加密
PE Injection、DLL Injection、Process Injection、Thread Injection、Code Injection、Shellcode Injection、ELF Injection、Dylib Injection, including 400+Tools and 350+posts
A modern 32/64-bit position independent implant template