Snippet List

Technique Language Author OS Creation Date
Indirect Memory Writing Delphi DarkCoderSc Windows 7 months, 3 weeks
System Binary Proxy Execution: Rundll32 Delphi DarkCoderSc Windows 1 year, 3 months
Reflective DLL injection Delphi DarkCoderSc Windows 2 years, 6 months
SMB / Named Pipes Delphi DarkCoderSc Windows 2 years, 8 months
C2 via FTP(S) Delphi DarkCoderSc Windows 2 years, 11 months
APC injection Delphi DarkCoderSc Windows 3 years, 8 months
APC injection Delphi DarkCoderSc Windows 3 years, 8 months
Process Hollowing, RunPE Delphi DarkCoderSc Windows 3 years, 10 months
ProcEnvInjection - Remote code injection by abusing process environment strings Delphi DarkCoderSc Windows 3 years, 11 months
DLL Injection via CreateRemoteThread and LoadLibrary Delphi DarkCoderSc Windows 3 years, 11 months
Checking Mouse Activity Delphi DarkCoderSc Windows 3 years, 11 months
NtQueryInformationProcess Delphi DarkCoderSc Windows 3 years, 11 months
File Melt Delphi DarkCoderSc Windows 5 years, 3 months
Detecting Active Services Delphi DarkCoderSc Windows 5 years, 3 months
NTFS Files Attributes Delphi DarkCoderSc Windows 5 years, 5 months
NtQueryObject Delphi DarkCoderSc Windows 5 years, 7 months
NtSetInformationThread Delphi DarkCoderSc Windows 5 years, 7 months
IsDebuggerPresent Delphi DarkCoderSc Windows 5 years, 8 months
NtSetDebugFilterState Delphi DarkCoderSc Windows 5 years, 8 months
OutputDebugString Delphi DarkCoderSc Windows 5 years, 8 months
SuspendThread Delphi DarkCoderSc Windows 5 years, 8 months
Detecting Window with FindWindow API Delphi DarkCoderSc Windows 5 years, 8 months
IsDebugged Flag Delphi DarkCoderSc Windows 5 years, 9 months
Filter