There are 4 repositories under antivirus-bypass topic.
Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".
🌟[NEW] Log by Telegram+Clipper ✅ [0/70] FUD Stealer can bypass all antivirus (Our Grabber can grabs: Wallets, Passwords, Credit Card, Cookies, Autofills, All Discord Token and info, Telegram, Twitter, TikTok, Twitch, Spotify, Riot Games, Roblox, Steam, Wallet Injection and Backup code ( 2fa/a2f ). 🔑 ⚠Disclaimer: We're not liable for caused damage
Red Team C2 Framework with AV/EDR bypass capabilities.
🐍 Double Venom (DVenom) is a tool that provides an encryption wrapper and loader for your shellcode.
A simple and stealthy reverse shell written in Nim that bypasses Windows Defender detection. This tool allows you to establish a reverse shell connection with a target system. Use responsibly for educational purposes only.
Rust malware EDR evasion via direct syscalls, fully implemented as an example in Rust
ShadeLoader is a shellcode loader designed to bypass most antivirus software. 壳代码, 杀毒软件, 绕过
The provided Python program, Inject-EXE.py, allows you to combine a malicious executable with a legitimate executable, producing a single output executable. This output executable will contain both the malicious and legitimate executables.
How to bypass windows defender by forcing uac
Windows RAT w/ antivirus bypass.
Bypass Windows Defender with a persistent staged reverse shell using C code & metasploit framework
Red Teaming Tactics and Techniques
Generate obfuscated PowerShell commands using XOR logic with random keys!
A simple, obfuscated in-memory injection script written in PowerShell that bypasses Windows Defender
Anti Malware Scan Interface (DLL) Bypass
Powerful Advanced Android FUD Crypter Bypass All Antivirus and Google Play Protect • CrosshairsFUD
Actively captures host computer’s clipboard content. Logs keystrokes into a readable text log. Takes a screenshot of host computer by every mouse-click occurrence. Encrypts all logs and images created by the tool. The python code itself is encrypted to hinder detection by anti-virus software.
EDRSandBlast is a tool written in C that weaponize a vulnerable signed driver to bypass EDR detections (Notify Routine callbacks, Object Callbacks and ETW TI provider) and LSASS protections. Multiple userland unhooking techniques are also implemented to evade userland monitoring.
Repository to publish your evasion techniques and contribute to the project
WinRM Reverse Shell Using Powershell.
Powerful Advanced Android FUD Crypter Bypass All Antivirus and Google Play Protect • CrosshairsFUD
Contact me for transform every payload in a fud piece of malware
Disables Windows Firewall and Virus & Threat Protection
About EverSpy | Purchase from official seller
Python Based Crypter That Can Bypass Any Kinds Of Antivirus Products
Simple but effective methods to avoid being detected by antivirus