WMI virus, because funny
Repositories
rmusser01 repositories
Network Security Monitoring on Raspberry Pi type devices
Purpose-built Red Team network hardware implant made from common components.
PoC for using TLS in Win8.1 and above
TLS Redirection
A multi-staged malware that contains a kernel mode rootkit and a remote system shell.
HTTP/S Beaconing Implant
Python / C# Unmanaged PowerShell based RAT
zeus-style banking trojan
Titan: A crappy Reflective Loader written in C and assembly for Cobalt Strike. Redirects DNS Beacon over DoH
Public variation of Titan Loader
Implementation of b4rtiks's SharpMiniDump using NTFS transactions to avoid writting the minidump to disk and exfiltrating it via HTTPS using sockets.
Experiment on producing Ring 0 to Ring 3 transition shellcode in C for x64 / x86. Uses PsSetContextThread() to direct execution. Interrupt Request Level ( IRQL ) Migration From DISPATCH_LEVEL to PASSIVE_LEVEL is done via Work Items
Former Multi - Ring to Kernel To UserMode Transitional Shellcode For Remote Kernel Exploits
SysWhispers integrated shellcode loader w/ ETW patching, anti-sandboxing, & spoofed code signing certificates
Unreal Tournament 2004 Maps and Characters
The goal of this repository is to document the most common techniques to bypass AppLocker.
https://twitter.com/itsreallynick/status/1120410950430089224
A VBA implementation of the RunPE technique or how to bypass application whitelisting.