Snippet List

Technique Language Author Creation Date
NlsCodeInjectionThroughRegistry C++ Unprotect 5 months, 1 week
Timestomp C Unprotect 5 months, 1 week
Killing Windows Event Log C++ Unprotect 5 months, 1 week
Parent PID Spoofing C++ Unprotect 5 months, 1 week
PE Injection C++ Unprotect 5 months, 1 week
Reflective DLL injection C++ Unprotect 5 months, 1 week
Shellcode Injection via CreateThreadpoolWait C++ Unprotect 5 months, 1 week
API Obfuscation C++ Unprotect 5 months, 1 week
Unloading Sysmon Driver cmd Unprotect 5 months, 1 week
Execution Guardrails: Environmental Keying C++ Unprotect 5 months, 1 week
APC injection C++ Unprotect 5 months, 1 week
IAT Hooking C++ Unprotect 5 months, 1 week
ProcEnvInjection - Remote code injection by abusing process environment strings Delphi Jean-Pierre LESUEUR 5 months, 1 week
DLL Injection via CreateRemoteThread and LoadLibrary Delphi Jean-Pierre LESUEUR 5 months, 1 week
Checking Mouse Activity Delphi Jean-Pierre LESUEUR 5 months, 1 week
Detecting Mac Address C# Jean-Pierre LESUEUR 5 months, 1 week
File Melt C# Jean-Pierre LESUEUR 5 months, 1 week
NtQueryInformationProcess C# Jean-Pierre LESUEUR 5 months, 1 week
NtQueryInformationProcess Delphi Jean-Pierre LESUEUR 5 months, 1 week
ProcEnvInjection - Remote code injection by abusing process environment strings C++ Unprotect 5 months, 2 weeks
Process Herpaderping C++ Unprotect 6 months, 4 weeks
Disabling Event Tracing for Windows (ETW) C++ Unprotect 7 months, 1 week
Volume Shadow Copy Service (VSC,VSS) Deletion PowerShell hackeT 9 months
Volume Shadow Copy Service (VSC,VSS) Deletion cmd hackeT 9 months
Parent PID Spoofing C++ Halil Dalabasmaz 1 year, 4 months
User Interaction (Are you human?) C++ Halil Dalabasmaz 1 year, 4 months
Detecting Online Sandbox C++ Kağan IŞILDAK 1 year, 5 months
Kill Process C++ Ahmed 1 year, 6 months
LocalSize(0) C++ Fumik0_ 1 year, 7 months
Detecting Online Sandbox Python Kağan IŞILDAK 1 year, 8 months

Filter