/GobypassAV-shellcode

使用go写的shellcode免杀加载器,免杀主流杀软,bypass火绒、360、def等

Primary LanguageGo

GobypassAV-shellcode

2023/04/18 使用go写的shellcode免杀加载器,免杀主流杀软,bypass火绒、360、def等

食用方法:

1、生成c的payload

image

2、加密后的结果填到代码里编译运行 go build -ldflags="-s -w"

image

免杀效果:

image

image

image

image

项目仅供进行学习研究,切勿用于任何非法未授权的活动,如个人使用违反安全相关法律,后果与本人无关

站在巨人的肩膀上学习,参考借鉴以下师傅的项目,特别感谢

https://learn.microsoft.com/en-us/windows/win32/api/memoryapi/nf-memoryapi-virtualalloc

https://github.com/7BitsTeam/EDR-Bypass-demo

https://www.yuque.com/aufeng/aufeng_good/aq09p0#yNorm

https://mp.weixin.qq.com/s/xiFbSE6goKFqLAlyACi83A

https://github.com/timwhitez/Doge-Loader

https://github.com/TideSec/GoBypassAV

https://www.crisprx.top/archives/515

https://github.com/Ne0nd0g/go-shellcode

https://github.com/piiperxyz/AniYa

https://github.com/safe6Sec/GolangBypassAV