PoC BYPASS EDR AND AV process injection via hollowing process
by Shy - Friday November 1, 2024 at 06:23 PM
#1
Code to myself a process injection with process hollowing technique and XOR decrypt in memory SHELLCODE to execute a process to BYPASS EDR(COMODO EDR) AND AV


Hidden Content
You must register or login to view this content.

Shellcode encode rotation XOR


Hidden Content
You must register or login to view this content.



Please use a VM to test it, be careful and dont upload to virus total THANK YOU
This forum account is currently banned. Ban Length: (Permanent)
Ban Reason: Multi-Accounting @OffensiveSecurity | http://breached26tezcofqla4adzyn22notfqw...an-Appeals if you feel this is incorrect.
Reply
#2
Alright well lets see what you got. What EDR's have you tested this on?
Reply
#3
curious to see execution dawg
Reply
#4
Thanks, What EDR's u tested this on?
Reply
#5
lets see whats inside this thread
Reply
#6
veamos su contenido
Reply
#7
edr is atricky game to not break your own code. hope its in rust
Reply
#8
Hope this works..
Reply
#9
wow lets check your method. i hope its cool
Reply
#10
hey man thanks for Sharing!!!
This forum account is currently banned. Ban Length: (Permanent)
Ban Reason: Compromised - Malware Logs
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  bypass Paywalls AntiBrok3rs 47 8,269 08-02-2025, 07:01 PM
Last Post: trank
  SQL Injection Dorker & Checker | Scrapes vuln websites from multiple search engines a DataScanner 26 1,245 04-10-2025, 12:48 AM
Last Post: nemooky1
  FREE Country limit bypass on youtube videos punkyx84 5 1,419 03-30-2025, 01:01 AM
Last Post: alaamouhamed
  Chatgpt Full Bypass zasvx 48 1,584 03-26-2025, 09:54 AM
Last Post: eric_d_keen
  Bypass + Disable Windows Defender losio 80 3,619 03-13-2025, 02:53 PM
Last Post: teyakkuz

Forum Jump:


 Users browsing this thread: