Jump to content
YOUR-AD-HERE
HOSTING
HACK-TOOLS

Locked KILLER TOOL - (EDR Evasion)


itsMe

Recommended Posts

230731975-a70abd1c-279b-4e79-9e91-6b5212

It's a AV/EDR Evasion tool created to bypass security tools for learning, until now the tool is FUD.

Features:

    Module Stomping for Memory scanning evasion
    DLL Unhooking by fresh ntdll copy
    IAT Hiding and Obfuscation & API Unhooking
    ETW Patchnig for bypassing some security controls
    Included sandbox evasion techniques & Basic Anti-Debugging
    Fully obfuscated (Functions - Keys - Shellcode) by XOR-ing
    Shellcode reversed and Encrypted
    Moving payload into hallowed memory without using APIs
    GetProcAddress & GetModuleHandle Implementation by @cocomelonc
    Runs without creating new thread & Suppoers x64 and x86 arch

230732045-ca2638fe-4f3c-4926-8f94-4fff81

This is the hidden content, please

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.