Snippet List

Technique Language Author OS Creation Date
CsrGetProcessID C++ External 2 years, 5 months
CloseHandle, NtClose C++ External 2 years, 5 months
Heap Flag C++ External 2 years, 5 months
GetTickCount C++ External 2 years, 5 months
GetLocalTime, GetSystemTime, timeGetTime, NtQueryPerformanceCounter C++ External 2 years, 5 months
Performing Code Checksum C++ External 2 years, 5 months
Unhandled Exception Filter C++ External 2 years, 5 months
Trap Flag C++ External 2 years, 5 months
INT 0x2D C++ External 2 years, 5 months
Trap Flag Assembly External 2 years, 5 months
ICE 0xF1 Assembly External 2 years, 5 months
INT 0x2D Assembly External 2 years, 5 months
INT3 Instruction Scanning Assembly External 2 years, 5 months
INT3 Instruction Scanning C++ External 2 years, 5 months
Bad String Format MASM External 2 years, 5 months
SuspendThread C++ External 2 years, 5 months
NLS Code Injection Through Registry C++ Unprotect 2 years, 5 months
Indicator Removal: Timestomp C Unprotect 2 years, 5 months
Killing Windows Event Log C++ Unprotect 2 years, 5 months
Access Token Manipulation: Parent PID Spoofing C++ Unprotect 2 years, 5 months
PE Injection C++ Unprotect 2 years, 5 months
Reflective DLL injection C++ Unprotect 2 years, 5 months
APC injection C++ Unprotect 2 years, 5 months
Shellcode Injection via CreateThreadpoolWait C++ Unprotect 2 years, 5 months
IAT Hooking C++ Unprotect 2 years, 5 months
API Obfuscation C++ Unprotect 2 years, 5 months
Unloading Sysmon Driver cmd Unprotect 2 years, 5 months
Execution Guardrails: Environmental Keying C++ Unprotect 2 years, 5 months
ProcEnvInjection - Remote code injection by abusing process environment strings Delphi DarkCoderSc 2 years, 5 months
DLL Injection via CreateRemoteThread and LoadLibrary Delphi DarkCoderSc 2 years, 5 months

Filter