Snippet List

Technique Language Author OS Creation Date
Indirect Memory Writing Delphi DarkCoderSc Windows 8 months, 2 weeks
System Binary Proxy Execution: Rundll32 Delphi DarkCoderSc Windows 1 year, 4 months
APC injection FASM32 DarkCoderSc Windows 2 years
Reflective DLL injection Delphi DarkCoderSc Windows 2 years, 6 months
SMB / Named Pipes Delphi DarkCoderSc Windows 2 years, 9 months
SMB / Named Pipes C# DarkCoderSc Windows 2 years, 9 months
Right-to-Left Override (RLO) Extension Spoofing PowerShell DarkCoderSc Windows 2 years, 10 months
C2 via FTP(S) Delphi DarkCoderSc Windows 3 years
C2 via FTP(S) C# DarkCoderSc Windows 3 years
Shortcut Hiding Python DarkCoderSc Windows 3 years, 6 months
APC injection Delphi DarkCoderSc Windows 3 years, 9 months
APC injection Delphi DarkCoderSc Windows 3 years, 9 months
Indicator Removal: Timestomp C# DarkCoderSc Windows 3 years, 10 months
Process Hollowing, RunPE Delphi DarkCoderSc Windows 3 years, 11 months
ProcEnvInjection - Remote code injection by abusing process environment strings Delphi DarkCoderSc Windows 4 years
DLL Injection via CreateRemoteThread and LoadLibrary Delphi DarkCoderSc Windows 4 years
Checking Mouse Activity Delphi DarkCoderSc Windows 4 years
Detecting Mac Address C# DarkCoderSc Windows 4 years
NtQueryInformationProcess Delphi DarkCoderSc Windows 4 years
NtQueryInformationProcess C# DarkCoderSc Windows 4 years
File Melt C# DarkCoderSc Windows 4 years
File Melt Delphi DarkCoderSc Windows 5 years, 3 months
Detecting Active Services Delphi DarkCoderSc Windows 5 years, 4 months
NTFS Files Attributes Delphi DarkCoderSc Windows 5 years, 6 months
Code Cave Python DarkCoderSc Windows 5 years, 7 months
NtQueryObject Delphi DarkCoderSc Windows 5 years, 8 months
NtSetInformationThread Delphi DarkCoderSc Windows 5 years, 8 months
IsDebuggerPresent Delphi DarkCoderSc Windows 5 years, 9 months
NtSetDebugFilterState Delphi DarkCoderSc Windows 5 years, 9 months
OutputDebugString Delphi DarkCoderSc Windows 5 years, 9 months
Filter