Skip to content
View Vdgonc's full-sized avatar
🤖
🤖

Block or report Vdgonc

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

🦠AV

8 repositories

Because AV evasion should be easy.

Go 665 62 Updated Nov 28, 2024

Experiment with PAGE_GUARD protection to hide memory from other processes

C 45 8 Updated Jun 24, 2024

Dynamically resolve and invoke Windows APIs using Rust. This might help to avoid suspicious imports and the usage of GetProcAddress.

Rust 8 2 Updated Oct 4, 2022

Minimal PoC developed as discuss in https://captmeelo.com/redteam/maldev/2022/05/10/ntcreateuserprocess.html

C 131 28 Updated May 10, 2022

It's a go variant of Hells gate! (directly calling windows kernel functions, but from Go!)

Go 497 53 Updated Oct 12, 2022

Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry

C# 388 37 Updated Aug 2, 2024