• Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.

Killer: tool created to evade AVs and EDRs or security tools

Status
Not open for further replies.

itsMe

*KillmeMories*
Staff member
Administrator
Super Moderator
Hacker
Specter
Crawler
Shadow
Joined
Jan 8, 2019
Messages
56,602
Solutions
2
Reputation
32
Reaction score
100,445
Points
2,313
Credits
32,540
‎6 Years of Service‎
 
76%
230731975-a70abd1c-279b-4e79-9e91-6b5212b7db9a.png


It’s an AV/EDR Evasion tool created to bypass security tools for learning, until now the tool is FUD.

Features:

    Module Stomping for Memory scanning evasion
    DLL Unhooking by fresh ntdll copy
    IAT Hiding and Obfuscation & API Unhooking
    ETW Patching for bypassing some security controls
    Included sandbox evasion techniques & Basic Anti-Debugging
    Fully obfuscated (Functions – Keys – Shellcode) by XOR-ing
    Shellcode reversed and Encrypted
    Moving payload into hallowed memory without using APIs
    Runs without creating new thread & Suppoers x64 and x86 arch

To see this hidden content, you must like this content.
 
Status
Not open for further replies.
Back
Top