/vx/Papers/Windows/Evasion - Process Creation and Shellcode Execution/

0 directories 132 files
List Grid
Name
Size Modified
Up
2016-01-12 - Creating Processes By Using Undocumented COM APIs.7z
1.0 KiB
2019-10-11 - An alternate way to execute a binary - NtQueryInformationProcess and the AeDebugProtected key.pdf
123 KiB
2020-05-27 - Shellcode - Recycling Compression Algorithms for the Z80, 8088, 6502, 8086 and 68K Architectures.pdf
414 KiB
2021-03-01 - Shellcode Execution via CopyFile2.cpp
1.9 KiB
2021-03-01 - Shellcode Execution via CreateTimerQueueTimer.cpp
1.8 KiB
2021-03-01 - Shellcode Execution via CreateTimerQueueTimer_Tech.cpp
1.7 KiB
2021-03-01 - Shellcode Execution via EnumChildWindows.cpp
1.5 KiB
2021-03-01 - Shellcode Execution via EnumResourceTypesW.cpp
1.6 KiB
2021-03-01 - Shellcode Execution via EnumWindows.cpp
1.5 KiB
2021-03-02 - Shellcode Execution via EnumDisplayMonitors.cpp
1.5 KiB
2021-03-02 - Shellcode Execution via EnumPropsEx.cpp
1.6 KiB
2021-03-03 - Shellcode Execution via EnumDesktopWindows.cpp
1.6 KiB
2021-03-05 - Shellcode Execution via EnumPageFilesW.cpp
1.4 KiB
2021-03-07 - Shellcode Execution via CopyFileEx.cpp
1.6 KiB
2021-03-07 - Shellcode Execution via EnumWindowStationsW.cpp
1.5 KiB
2021-03-07 - Shellcode Execution via SymEnumProcesses.cpp
1.6 KiB
2021-03-08 - Shellcode Execution via EnumerateLoadedModules.cpp
1.5 KiB
2021-03-08 - Shellcode Execution via ImageGetDigestStream.cpp
1.8 KiB
2021-03-11 - Shellcode Execution via VerifierEnumerateResource.cpp
2.1 KiB
2021-03-12 - Shellcode Execution via CertEnumSystemStore.cpp
1.5 KiB
2021-03-14 - Shellcode Execution via CertEnumSystemStoreLocation.cpp
1.5 KiB
2021-03-19 - Shellcode Execution via CreateThreadPoolWait.cpp
2.0 KiB
2021-03-19 - Shellcode Execution via EnumDesktopW.cpp
1.6 KiB
2021-03-19 - Shellcode Execution via EnumDirTreeW.cpp
1.7 KiB
2021-03-21 - Shellcode Execution via SysEnumSourceFiles.cpp
1.6 KiB
2021-03-27 - Shellcode Execution via FiberContextEdit.vcxproj
6.9 KiB
2021-03-27 - Shellcode Execution via InitOnceExecuteOnce.cpp
1.6 KiB
2021-03-27 - Shellcode Execution via SymFindFileInPath.cpp
1.9 KiB
2021-03-28 - Shellcode Execution via EnumPropsW.cpp
1.5 KiB
2021-03-28 - Shellcode Execution via FlsAlloc.cpp
1.6 KiB
2021-03-28 - Shellcode Execution via RtlUserFiberStart.vcxproj
6.9 KiB
2021-03-30 - Shellcode Execution via LdrEnumerateLoadedModules.cpp
3.2 KiB
2021-03-30 - Shellcode Execution via LdrpCallInitRoutine.vcxproj
6.9 KiB
2021-03-31 - Shellcode Execution via EnumLanguageGroupLocalesW.cpp
1.5 KiB
2021-04-01 - Shellcode Execution via SetTimer.cpp
1.6 KiB
2021-04-04 - Shellcode Execution via SetupCommitFileQueueW.cpp
1.7 KiB
2021-04-08 - Shellcode Execution via EnumUILanguagesW.cpp
1.5 KiB
2021-04-09 - Shellcode Execution via EnumSystemLocales.cpp
1.5 KiB
2021-04-11 - Shellcode Execution via EnumPwrSchemes.cpp
1.5 KiB
2021-04-12 - Shellcode Execution via EnumResourceTypesExW.cpp
1.6 KiB
2021-04-15 - Shellcode Execution via ImmEnumInputContext.cpp
1.5 KiB
2021-04-28 - Shellcode Execution via EnumFontsW.cpp
1.5 KiB
2021-04-30 - Shellcode Execution via EnumFontFamiliesW.cpp
1.5 KiB
2021-05-01 - Shellcode Execution via EnumFontFamiliesExW.cpp
1.6 KiB
2021-05-03 - Shellcode Execution via EnumObjects.cpp
1.5 KiB
2021-05-05 - Weird Ways to Run Unmanaged Code in NET.pdf
2.6 MiB
2021-05-06 - Shellcode Execution via CryptEnumOIDInfo.cpp
1.5 KiB
2021-05-07 - Shellcode Execution via EnumTimeFormatsEx.cpp
1.6 KiB
2021-06-12 - Shellcode Execution via EnumICMProfiles.cpp
1.5 KiB
2021-10-23 - Shellcode Execution via EnumCalendarInfoEx.cpp
1.5 KiB
2021-11-26 - Abusing Windows’ Implementation of Fork() for Stealthy Memory Operations.pdf
524 KiB
2021-12-05 - Shellcode Execution via EnumThreadWindows.cpp
1.4 KiB
2022-01-12 - Playing Around COM Objects Part 1 - DllGetClassObject and ShellExecute IDispatch for Process creation.pdf
2.0 MiB
2022-01-28 - The good the bad and the stomped function.7z
720 KiB
2022-05-10 - Making NtCreateUserProcess Work.pdf
388 KiB
2022-07-13 - Bluffy the AV Slayer.pdf
806 KiB
2022-07-19 - Creating Processes Using System Calls.7z
322 KiB
2022-09-05 - Shellcode Execution via CDefFolderMenu_Create2.c
1.2 KiB
2022-09-05 - Shellcode Execution via CopyFileTransacted.c
1.8 KiB
2022-09-05 - Shellcode Execution via DSA_EnumCallback.c
1.3 KiB
2022-09-05 - Shellcode Execution via EncryptedFileRaw.c
1.2 KiB
2022-09-05 - Shellcode Execution via EvtSubscribe_CVEEventWrite.c
1.6 KiB
2022-09-05 - Shellcode Execution via MagSetWindowTransform.c
1.4 KiB
2022-09-05 - Shellcode Execution via MessageBoxIndirect.c
1.3 KiB
2022-09-05 - Shellcode Execution via MFAddPeriodicCallback.c
1.2 KiB
2022-09-05 - Shellcode Execution via NotifyIpInterfaceChange.c
1.2 KiB
2022-09-05 - Shellcode Execution via NotifyTeredoPortChange.c
1.2 KiB
2022-09-05 - Shellcode Execution via NotifyUnicastIpAddressChange.c
1.2 KiB
2022-09-05 - Shellcode Execution via PerfStartProviderEx.c
1.4 KiB
2022-09-05 - Shellcode Execution via RegisterWaitForSingleObject.c
1.4 KiB
2022-09-05 - Shellcode Execution via SetWaitableTimer.c
1.2 KiB
2022-09-05 - Shellcode Execution via SHCreateThreadWithHandle.c
1.3 KiB
2022-09-05 - Shellcode Execution via StackWalk.c
1.6 KiB
2022-09-05 - Shellcode Execution via SymRegisterCallback.c
1.3 KiB
2022-09-05 - Shellcode Execution via TaskDialogIndirect.c
2.2 KiB
2022-09-05 - Shellcode Execution via WinHttpSetStatus.c
1.4 KiB
2022-09-10 - Shellcode Execution via InternetSetStatusCallback.c
1.5 KiB
2022-09-11 - Shellcode Execution via CreateThreadPoolTimer.c
1.6 KiB
2022-09-11 - Shellcode Execution via CreateThreadPoolWork.c
1.3 KiB
2022-09-11 - Shellcode Execution via GetOpenFileName.c
1.8 KiB
2022-09-11 - Shellcode Execution via GetSaveFileName.c
1.8 KiB
2022-09-12 - Shellcode Execution via FindText.c
1.4 KiB
2022-09-12 - Shellcode Execution via OleUIBusy.c
1.3 KiB
2022-09-12 - Shellcode Execution via PrintDlg.c
1.2 KiB
2022-09-12 - Shellcode Execution via ReplaceText.c
1.4 KiB
2022-09-13 - Shellcode Execution via PageSetupDlg.c
1.3 KiB
2022-09-15 - Shellcode Execution via ChooseFont.c
1.2 KiB
2022-09-15 - Shellcode Execution via TrySubmitThreadpoolCallback.c
1.2 KiB
2022-09-18 - Shellcode Execution via acmDriverEnum.c
1.1 KiB
2022-09-18 - Shellcode Execution via acmFilterChoose.c
1.5 KiB
2022-09-18 - Shellcode Execution via ChooseColor.c
1.2 KiB
2022-09-18 - Shellcode Execution via LineDDA.c
1.1 KiB
2022-09-18 - Shellcode Execution via NotifyRouteChange2.c
1.2 KiB
2022-09-18 - Shellcode Execution via RegisterWaitChainCOMCallback.c
1.2 KiB
2022-09-19 - Shellcode Execution via PdhBrowseCounters.c
1.3 KiB
2022-09-20 - Shellcode Execution via CertFindChainInStore.c
1.5 KiB
2022-09-20 - Shellcode Execution via ClusWorkerCreate.c
1.3 KiB
2022-09-20 - Shellcode Execution via PowerRegisterForEffectivePowerModeNotifications.c
1.3 KiB
2022-09-21 - Shellcode Execution via MI_Session_Close.c
1.4 KiB
2022-09-21 - Shellcode Execution via MI_Session_Invoke.c
2.0 KiB
2022-09-21 - Shellcode Execution via NotifyNetworkConnectivityHintChange.c
1.3 KiB
2022-09-21 - Shellcode Execution via WinBioCaptureSampleWithCallback.c
1.5 KiB
2022-09-21 - Shellcode Execution via WinBioEnrollCaptureWithCallback.c
1.4 KiB
2022-09-21 - Shellcode Execution via WinBioVerifyWithCallback.c
1.5 KiB
2022-09-21 - Shellcode Execution via WindowsInspectString.c
1.2 KiB
2022-09-23 - Shellcode Execution via FCICreate.c
1.2 KiB
2022-10-15 - Shellcode Execution via EnumCalendarInfo.cpp
1.5 KiB
2022-12-18 - Shellcode Execution via GrayString.c
1.1 KiB
2022-12-18 - Shellcode Execution via SHBrowseForFolder.c
1.3 KiB
2022-12-19 - Shellcode Execution via DirectDrawEnumerateExA.c
1.1 KiB
2022-12-19 - Shellcode Execution via SetupIterateCabinet.c
1.2 KiB
2022-12-20 - Shellcode Execution via DnsStartMulticastQuery.c
1.5 KiB
2022-12-20 - Shellcode Execution via WriteEncryptedFileRaw.c
1.6 KiB
2022-12-23 - Simple PE Loader.7z
63 KiB
2023-01-20 - Shellcode Execution via RoInspectCapturedStackBackTrace.c
1.3 KiB
2023-01-20 - Shellcode Execution via RoInspectThreadErrorInfo.c
1.2 KiB
2023-01-21 - Shellcode Execution via NPAddConnection3.c
1.5 KiB
2023-01-21 - Shellcode Execution via WscRegisterForChanges.c
2.2 KiB
2023-01-28 - Shellcode Execution via acmFormatTagEnum.c
1.3 KiB
2023-01-28 - Shellcode Execution via DrawState.c
1.2 KiB
2023-01-28 - Shellcode Execution via WriteEncryptedFileRaw.c
1.6 KiB
2023-01-29 - Indirect Syscall is Dead Long Live Custom Call Stacks.7z
958 KiB
2023-01-29 - Shellcode Execution via BindImageEx.c
1.2 KiB
2023-01-29 - Shellcode Execution via CertCreateContext.c
1.4 KiB
2023-01-29 - Shellcode Execution via CertEnumPhysicalStore.c
1.2 KiB
2023-01-29 - Shellcode Execution via DdeInitialize.c
1.3 KiB
2023-01-29 - Shellcode Execution via DnsServiceBrowse.c
1.4 KiB
2023-01-29 - Shellcode Execution via SetupInstallFile.c
1.6 KiB
2023-01-29 - Shellcode Execution via waveOutOpen.c
1.4 KiB
2023-01-30 - Shellcode Execution via MiniDumpWriteDump.c
1.3 KiB
2023-02-14 - Adopting Position Independent Shellcodes from Object Files in Memory for Threadless Injection.pdf
981 KiB
2023-04-18 - Process injection in 2023 evading leading EDRs.pdf
5.0 MiB