Snippet List

Technique Language Author OS Creation Date
System Binary Proxy Execution: Rundll32 Delphi DarkCoderSc 2 months
APC injection FASM32 DarkCoderSc 10 months, 1 week
Reflective DLL injection Delphi DarkCoderSc 1 year, 4 months
SMB / Named Pipes Delphi DarkCoderSc 1 year, 7 months
SMB / Named Pipes C# DarkCoderSc 1 year, 7 months
Right-to-Left Override (RLO) Extension Spoofing PowerShell DarkCoderSc 1 year, 7 months
C2 via FTP(S) Delphi DarkCoderSc 1 year, 9 months
C2 via FTP(S) C# DarkCoderSc 1 year, 9 months
Shortcut Hiding Python DarkCoderSc 2 years, 3 months
APC injection Delphi DarkCoderSc 2 years, 6 months
APC injection Delphi DarkCoderSc 2 years, 6 months
Indicator Removal: Timestomp C# DarkCoderSc 2 years, 7 months
Process Hollowing, RunPE Delphi DarkCoderSc 2 years, 9 months
ProcEnvInjection - Remote code injection by abusing process environment strings Delphi DarkCoderSc 2 years, 9 months
DLL Injection via CreateRemoteThread and LoadLibrary Delphi DarkCoderSc 2 years, 9 months
Checking Mouse Activity Delphi DarkCoderSc 2 years, 9 months
Detecting Mac Address C# DarkCoderSc 2 years, 9 months
NtQueryInformationProcess Delphi DarkCoderSc 2 years, 9 months
NtQueryInformationProcess C# DarkCoderSc 2 years, 9 months
File Melt C# DarkCoderSc 2 years, 9 months
File Melt Delphi DarkCoderSc 4 years, 1 month
Detecting Active Services Delphi DarkCoderSc 4 years, 1 month
NTFS Files Attributes Delphi DarkCoderSc 4 years, 3 months
Code Cave Python DarkCoderSc 4 years, 4 months
NtQueryObject Delphi DarkCoderSc 4 years, 5 months
NtSetInformationThread Delphi DarkCoderSc 4 years, 6 months
IsDebuggerPresent Delphi DarkCoderSc 4 years, 6 months
NtSetDebugFilterState Delphi DarkCoderSc 4 years, 6 months
OutputDebugString Delphi DarkCoderSc 4 years, 6 months
SuspendThread Delphi DarkCoderSc 4 years, 6 months

Filter