Snippet List

Technique Language Author OS Creation Date
Indicator Removal: Timestomp C# DarkCoderSc 3 years
Hijack Execution Flow: DLL Search Order Hijacking C++ Sh0ckFR 3 years
DLL Proxying C++ Sh0ckFR 3 years
DLL Proxying Python Sh0ckFR 3 years
Change Module Base Address at Runtime C++ Alex Schwarz 3 years, 1 month
Change Module Name at Runtime C++ Alex Schwarz 3 years, 1 month
FLIRT Signatures Evasion Assembly Lexsek 3 years, 1 month
Windows Event Log Evasion via Native APIs C++ External 3 years, 1 month
Process Hollowing, RunPE Delphi DarkCoderSc 3 years, 1 month
RDTSC C++ External 3 years, 1 month
NtQueryObject C++ External 3 years, 1 month
CsrGetProcessID C++ External 3 years, 1 month
CloseHandle, NtClose C++ External 3 years, 1 month
Heap Flag C++ External 3 years, 1 month
GetTickCount C++ External 3 years, 1 month
GetLocalTime, GetSystemTime, timeGetTime, NtQueryPerformanceCounter C++ External 3 years, 1 month
Performing Code Checksum C++ External 3 years, 1 month
Unhandled Exception Filter C++ External 3 years, 1 month
Trap Flag C++ External 3 years, 1 month
INT 0x2D C++ External 3 years, 1 month
Trap Flag Assembly External 3 years, 1 month
ICE 0xF1 Assembly External 3 years, 1 month
INT 0x2D Assembly External 3 years, 1 month
INT3 Instruction Scanning Assembly External 3 years, 1 month
INT3 Instruction Scanning C++ External 3 years, 1 month
Bad String Format MASM External 3 years, 1 month
SuspendThread C++ External 3 years, 1 month
NLS Code Injection Through Registry C++ Unprotect 3 years, 1 month
Indicator Removal: Timestomp C Unprotect 3 years, 2 months
Killing Windows Event Log C++ Unprotect 3 years, 2 months

Filter