Snippet List

Technique Language Author OS Creation Date
Detecting Virtual Environment Process C++ 0x_ror 1 day, 20 hours
Process Argument Spoofing Python Wietze 2 days, 21 hours
Process Argument Spoofing C Wietze 2 days, 21 hours
Event Triggered Execution: Linux Inotify Python 1d8 2 days, 21 hours
API Hammering C++ 0x_ror 2 days, 21 hours
Replication Through Removable Media Python 1d8 1 month
QEMU CPU brand evasion C++ kernelwernel 2 months, 2 weeks
bochs CPU oversights evasion C++ kernelwernel 2 months, 3 weeks
Impair Defenses: Disable Windows Event Logging PowerShell 0x0d4y 3 months
Impair Defenses: Disable Windows Event Logging bash 0x0d4y 3 months
AppInit DLL Injection C 1d8 3 months
Hide Artifacts: Hidden Window C 1d8 3 months
VboxEnumShares C++ HoIIovv 3 months
Odd Thread Count C++ kernelwernel 3 months
Hyper-V Signature C++ kernelwernel 3 months
NtDelayExecution C d4rksystem 3 months
APC injection FASM32 DarkCoderSc 5 months, 4 weeks
Runtime Function Decryption Python irfan_eternal 7 months, 4 weeks
Retrieve HDD Information C++ HoIIovv 8 months
BuildCommDCBAndTimeoutA C Huntress Research Team 8 months
Reflective DLL injection Delphi DarkCoderSc 11 months, 4 weeks
SMB / Named Pipes Delphi DarkCoderSc 1 year, 2 months
SMB / Named Pipes C# DarkCoderSc 1 year, 2 months
Right-to-Left Override (RLO) Extension Spoofing PowerShell DarkCoderSc 1 year, 3 months
Virtualization/Sandbox Evasion: Time Based Evasion Golang Edode 1 year, 4 months
DLL Unhooking C++ External 1 year, 4 months
Shikata Ga Nai (SGN) bash Dreamkinn 1 year, 4 months
Process Reimaging C++ 一半人生 1 year, 4 months
Process Ghosting C++ 一半人生 1 year, 4 months
C2 via FTP(S) Delphi DarkCoderSc 1 year, 5 months

Filter