Snippet List

Technique Language Author Creation Date
Tamper DLL Export Names & GetProcAddress Spoofing C++ Alex Schwarz 3 months, 2 weeks
DLL Search Order Hijacking C++ Sh0ckFR 4 months
DLL Proxying C++ Sh0ckFR 4 months
Change Module Base Address at Runtime C++ Alex Schwarz 4 months, 1 week
Change Module Name at Runtime C++ Alex Schwarz 4 months, 1 week
Windows Event Log Evasion via Native APIs C++ External 5 months
RDTSC C++ External 5 months, 1 week
NtQueryObject C++ External 5 months, 1 week
CsrGetProcessID C++ External 5 months, 1 week
CloseHandle, NtClose C++ External 5 months, 1 week
Heap Flag C++ External 5 months, 1 week
GetTickCount C++ External 5 months, 1 week
GetLocalTime, GetSystemTime, timeGetTime, NtQueryPerformanceCounter C++ External 5 months, 1 week
Performing Code Checksum C++ External 5 months, 1 week
Unhandled Exception Filter C++ External 5 months, 1 week
Trap Flag C++ External 5 months, 1 week
INT 0x2D C++ External 5 months, 1 week
INT3 Instruction Scanning C++ External 5 months, 1 week
SuspendThread C++ External 5 months, 1 week
NlsCodeInjectionThroughRegistry C++ Unprotect 5 months, 1 week
Killing Windows Event Log C++ Unprotect 5 months, 1 week
APC injection C++ Unprotect 5 months, 1 week
Execution Guardrails: Environmental Keying C++ Unprotect 5 months, 1 week
IAT Hooking C++ Unprotect 5 months, 1 week
Shellcode Injection via CreateThreadpoolWait C++ Unprotect 5 months, 1 week
Reflective DLL injection C++ Unprotect 5 months, 1 week
Parent PID Spoofing C++ Unprotect 5 months, 1 week
PE Injection C++ Unprotect 5 months, 1 week
API Obfuscation C++ Unprotect 5 months, 1 week
ProcEnvInjection - Remote code injection by abusing process environment strings C++ Unprotect 5 months, 2 weeks

Filter