├── README.md ├── autogen_loader.sh ├── encryptor.cs ├── loader_dinvoke_template.txt ├── loader_halogate_template.txt ├── old_v1_pinvoke ├── aesloader_template.txt ├── autogen_covenant.sh ├── autogen_meterpreter.sh ├── autogen_sliver.sh ├── miniloader_template_x64.txt └── miniloader_template_x86.txt └── old_v2_autogenscripts ├── autogen_cobaltstrike.sh ├── autogen_covenant.sh ├── autogen_meterpreter.sh ├── autogen_sliver.sh ├── autogen_template.sh └── donut ├── DemoCreateProcess ├── Class1.cs ├── DemoCreateProcess.csproj ├── DemoCreateProcess.sln ├── Properties │ └── AssemblyInfo.cs └── Readme.md ├── DonutTest ├── App.config ├── DonutTest.csproj ├── DonutTest.sln ├── Hello.cs ├── Hello.exe ├── Program.cs ├── Properties │ └── AssemblyInfo.cs ├── Readme.md ├── calc.js ├── calc.vbs ├── calc.xsl ├── hello.c ├── rundotnet.cpp ├── rundotnet.exe └── testcase.c ├── LICENSE ├── MANIFEST.in ├── Makefile ├── Makefile.mingw ├── Makefile.msvc ├── ModuleMonitor ├── LICENSE ├── ModuleMonitor.csproj ├── ModuleMonitor.csproj.user ├── ModuleMonitor.sln ├── Program.cs ├── Properties │ └── AssemblyInfo.cs ├── README.md ├── app.config ├── app.manifest └── img │ └── detected.png ├── ProcessManager ├── App.config ├── LICENSE ├── ProcessManager.csproj ├── ProcessManager.csproj.user ├── ProcessManager.sln ├── Program.cs ├── Properties │ └── AssemblyInfo.cs ├── README.md └── img │ └── usage.JPG ├── README.md ├── clib.o ├── docs ├── 2019-08-21-Python_Extension.md ├── 2019-5-31-Apple-Fritter.md ├── 2019-5-9-Introducing-Donut.md ├── api.html └── api.md ├── donut ├── donut.c ├── donut.o ├── donutmodule.c ├── encrypt.c ├── encrypt.o ├── hash.c ├── hash.o ├── img ├── ST_generate_and_copy.PNG ├── ST_generate_and_copy_86.PNG ├── ST_inject.PNG ├── ST_success.PNG ├── detected.png ├── donut.PNG ├── generate_and_copy.PNG └── iexplore.png ├── include ├── donut.h ├── encrypt.h ├── hash.h ├── mmap-windows.c ├── mmap.h ├── pe.h ├── poppack.h ├── pshpack1.h ├── pshpack2.h ├── pshpack4.h ├── pshpack8.h └── wintypes.h ├── lib ├── donut.h ├── libdonut.a └── libdonut.so ├── payload ├── Makefile ├── Makefile.mingw ├── Makefile.msvc ├── activescript.c ├── activescript.h ├── amsi.h ├── bypass.c ├── call_api.asm ├── call_api_bin.h ├── clib.c ├── clr.h ├── exe2h │ ├── Makefile │ ├── Makefile.mingw │ ├── Makefile.msvc │ ├── exe2h │ ├── exe2h.c │ ├── exe2h.obj │ ├── mmap-windows.c │ ├── mmap-windows.obj │ └── mmap.h ├── getpc.c ├── http_client.c ├── inject.c ├── inmem_dotnet.c ├── inmem_pe.c ├── inmem_script.c ├── inmem_xsl.c ├── order.txt ├── payload.c ├── payload.h ├── payload_exe_x64.h ├── payload_exe_x86.h ├── peb.c ├── peb.h ├── runsc.c ├── test │ ├── api_test.c │ ├── call_api_dll.c │ ├── hello.c │ ├── hello.cs │ └── rdt.cpp ├── winapi.h ├── wscript.c ├── wscript.h └── xmldom.h ├── setup.py └── version-release-notes.txt /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/README.md -------------------------------------------------------------------------------- /autogen_loader.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/autogen_loader.sh -------------------------------------------------------------------------------- /encryptor.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/encryptor.cs -------------------------------------------------------------------------------- /loader_dinvoke_template.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/loader_dinvoke_template.txt -------------------------------------------------------------------------------- /loader_halogate_template.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/loader_halogate_template.txt -------------------------------------------------------------------------------- /old_v1_pinvoke/aesloader_template.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v1_pinvoke/aesloader_template.txt -------------------------------------------------------------------------------- /old_v1_pinvoke/autogen_covenant.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v1_pinvoke/autogen_covenant.sh -------------------------------------------------------------------------------- /old_v1_pinvoke/autogen_meterpreter.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v1_pinvoke/autogen_meterpreter.sh -------------------------------------------------------------------------------- /old_v1_pinvoke/autogen_sliver.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v1_pinvoke/autogen_sliver.sh -------------------------------------------------------------------------------- /old_v1_pinvoke/miniloader_template_x64.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v1_pinvoke/miniloader_template_x64.txt -------------------------------------------------------------------------------- /old_v1_pinvoke/miniloader_template_x86.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v1_pinvoke/miniloader_template_x86.txt -------------------------------------------------------------------------------- /old_v2_autogenscripts/autogen_cobaltstrike.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/autogen_cobaltstrike.sh -------------------------------------------------------------------------------- /old_v2_autogenscripts/autogen_covenant.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/autogen_covenant.sh -------------------------------------------------------------------------------- /old_v2_autogenscripts/autogen_meterpreter.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/autogen_meterpreter.sh -------------------------------------------------------------------------------- /old_v2_autogenscripts/autogen_sliver.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/autogen_sliver.sh -------------------------------------------------------------------------------- /old_v2_autogenscripts/autogen_template.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/autogen_template.sh -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DemoCreateProcess/Class1.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DemoCreateProcess/Class1.cs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DemoCreateProcess/DemoCreateProcess.csproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DemoCreateProcess/DemoCreateProcess.csproj -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DemoCreateProcess/DemoCreateProcess.sln: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DemoCreateProcess/DemoCreateProcess.sln -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DemoCreateProcess/Properties/AssemblyInfo.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DemoCreateProcess/Properties/AssemblyInfo.cs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DemoCreateProcess/Readme.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DemoCreateProcess/Readme.md -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/App.config: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/App.config -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/DonutTest.csproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/DonutTest.csproj -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/DonutTest.sln: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/DonutTest.sln -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/Hello.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/Hello.cs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/Hello.exe: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/Hello.exe -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/Program.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/Program.cs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/Properties/AssemblyInfo.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/Properties/AssemblyInfo.cs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/Readme.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/Readme.md -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/calc.js: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/calc.js -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/calc.vbs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/calc.vbs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/calc.xsl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/calc.xsl -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/hello.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/hello.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/rundotnet.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/rundotnet.cpp -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/rundotnet.exe: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/rundotnet.exe -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/DonutTest/testcase.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/DonutTest/testcase.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/LICENSE -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/MANIFEST.in: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/MANIFEST.in -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/Makefile -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/Makefile.mingw: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/Makefile.mingw -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/Makefile.msvc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/Makefile.msvc -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ModuleMonitor/LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ModuleMonitor/LICENSE -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ModuleMonitor/ModuleMonitor.csproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ModuleMonitor/ModuleMonitor.csproj -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ModuleMonitor/ModuleMonitor.csproj.user: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ModuleMonitor/ModuleMonitor.csproj.user -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ModuleMonitor/ModuleMonitor.sln: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ModuleMonitor/ModuleMonitor.sln -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ModuleMonitor/Program.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ModuleMonitor/Program.cs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ModuleMonitor/Properties/AssemblyInfo.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ModuleMonitor/Properties/AssemblyInfo.cs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ModuleMonitor/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ModuleMonitor/README.md -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ModuleMonitor/app.config: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ModuleMonitor/app.config -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ModuleMonitor/app.manifest: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ModuleMonitor/app.manifest -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ModuleMonitor/img/detected.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ModuleMonitor/img/detected.png -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ProcessManager/App.config: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ProcessManager/App.config -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ProcessManager/LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ProcessManager/LICENSE -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ProcessManager/ProcessManager.csproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ProcessManager/ProcessManager.csproj -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ProcessManager/ProcessManager.csproj.user: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ProcessManager/ProcessManager.csproj.user -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ProcessManager/ProcessManager.sln: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ProcessManager/ProcessManager.sln -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ProcessManager/Program.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ProcessManager/Program.cs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ProcessManager/Properties/AssemblyInfo.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ProcessManager/Properties/AssemblyInfo.cs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ProcessManager/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ProcessManager/README.md -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/ProcessManager/img/usage.JPG: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/ProcessManager/img/usage.JPG -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/README.md -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/clib.o: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/clib.o -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/docs/2019-08-21-Python_Extension.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/docs/2019-08-21-Python_Extension.md -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/docs/2019-5-31-Apple-Fritter.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/docs/2019-5-31-Apple-Fritter.md -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/docs/2019-5-9-Introducing-Donut.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/docs/2019-5-9-Introducing-Donut.md -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/docs/api.html: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/docs/api.html -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/docs/api.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/docs/api.md -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/donut: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/donut -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/donut.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/donut.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/donut.o: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/donut.o -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/donutmodule.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/donutmodule.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/encrypt.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/encrypt.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/encrypt.o: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/encrypt.o -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/hash.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/hash.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/hash.o: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/hash.o -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/img/ST_generate_and_copy.PNG: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/img/ST_generate_and_copy.PNG -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/img/ST_generate_and_copy_86.PNG: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/img/ST_generate_and_copy_86.PNG -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/img/ST_inject.PNG: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/img/ST_inject.PNG -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/img/ST_success.PNG: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/img/ST_success.PNG -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/img/detected.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/img/detected.png -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/img/donut.PNG: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/img/donut.PNG -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/img/generate_and_copy.PNG: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/img/generate_and_copy.PNG -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/img/iexplore.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/img/iexplore.png -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/donut.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/donut.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/encrypt.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/encrypt.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/hash.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/hash.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/mmap-windows.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/mmap-windows.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/mmap.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/mmap.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/pe.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/pe.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/poppack.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/poppack.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/pshpack1.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/pshpack1.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/pshpack2.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/pshpack2.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/pshpack4.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/pshpack4.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/pshpack8.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/pshpack8.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/include/wintypes.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/include/wintypes.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/lib/donut.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/lib/donut.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/lib/libdonut.a: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/lib/libdonut.a -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/lib/libdonut.so: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/lib/libdonut.so -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/Makefile -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/Makefile.mingw: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/Makefile.mingw -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/Makefile.msvc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/Makefile.msvc -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/activescript.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/activescript.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/activescript.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/activescript.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/amsi.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/amsi.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/bypass.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/bypass.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/call_api.asm: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/call_api.asm -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/call_api_bin.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/call_api_bin.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/clib.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/clib.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/clr.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/clr.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/exe2h/Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/exe2h/Makefile -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/exe2h/Makefile.mingw: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/exe2h/Makefile.mingw -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/exe2h/Makefile.msvc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/exe2h/Makefile.msvc -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/exe2h/exe2h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/exe2h/exe2h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/exe2h/exe2h.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/exe2h/exe2h.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/exe2h/exe2h.obj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/exe2h/exe2h.obj -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/exe2h/mmap-windows.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/exe2h/mmap-windows.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/exe2h/mmap-windows.obj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/exe2h/mmap-windows.obj -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/exe2h/mmap.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/exe2h/mmap.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/getpc.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/getpc.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/http_client.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/http_client.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/inject.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/inject.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/inmem_dotnet.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/inmem_dotnet.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/inmem_pe.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/inmem_pe.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/inmem_script.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/inmem_script.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/inmem_xsl.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/inmem_xsl.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/order.txt: -------------------------------------------------------------------------------- 1 | ThreadProc -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/payload.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/payload.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/payload.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/payload.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/payload_exe_x64.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/payload_exe_x64.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/payload_exe_x86.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/payload_exe_x86.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/peb.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/peb.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/peb.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/peb.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/runsc.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/runsc.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/test/api_test.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/test/api_test.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/test/call_api_dll.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/test/call_api_dll.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/test/hello.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/test/hello.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/test/hello.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/test/hello.cs -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/test/rdt.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/test/rdt.cpp -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/winapi.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/winapi.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/wscript.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/wscript.c -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/wscript.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/wscript.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/payload/xmldom.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/payload/xmldom.h -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/setup.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/setup.py -------------------------------------------------------------------------------- /old_v2_autogenscripts/donut/version-release-notes.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/F4l13n5n0w/sn0wldr/HEAD/old_v2_autogenscripts/donut/version-release-notes.txt --------------------------------------------------------------------------------