Snippet List

Technique Language Author OS Creation Date
Indicator Removal: Timestomp C Unprotect 2 years, 6 months
Killing Windows Event Log C++ Unprotect 2 years, 6 months
Access Token Manipulation: Parent PID Spoofing C++ Unprotect 2 years, 6 months
PE Injection C++ Unprotect 2 years, 6 months
Reflective DLL injection C++ Unprotect 2 years, 6 months
APC injection C++ Unprotect 2 years, 6 months
Shellcode Injection via CreateThreadpoolWait C++ Unprotect 2 years, 6 months
IAT Hooking C++ Unprotect 2 years, 6 months
API Obfuscation C++ Unprotect 2 years, 6 months
Unloading Sysmon Driver cmd Unprotect 2 years, 6 months
Execution Guardrails: Environmental Keying C++ Unprotect 2 years, 6 months
ProcEnvInjection - Remote code injection by abusing process environment strings C++ Unprotect 2 years, 6 months
Process Herpaderping C++ Unprotect 2 years, 8 months
Disabling Event Tracing for Windows (ETW) C++ Unprotect 2 years, 8 months
Guard Pages C++ Unprotect 3 years, 11 months
EditWordBreakProc C++ Unprotect 4 years, 2 months
CLIPBRDWNDCLASS C++ Unprotect 4 years, 2 months
Listplanting C++ Unprotect 4 years, 2 months
Checking Installed Software C++ Unprotect 4 years, 2 months
Wiping or Encrypting C++ Unprotect 4 years, 3 months
CPUID C++ Unprotect 4 years, 3 months
Time Bomb C++ Unprotect 4 years, 3 months
Time Bomb C++ Unprotect 4 years, 3 months
Injection using Shims C++ Unprotect 4 years, 3 months
Detecting Running Process: EnumProcess API C++ Unprotect 4 years, 3 months
VPCEXT C++ Unprotect 4 years, 3 months
EventPairHandles C++ Unprotect 4 years, 3 months
Querying the I/O Communication Port C++ Unprotect 4 years, 3 months
Process Hollowing, RunPE Python Unprotect 4 years, 4 months

Filter