├── Lockd ├── Lockd.sln ├── Lockd │ ├── CContextHook.cpp │ ├── CContextHook.hpp │ ├── Definitions.hpp │ ├── GadgetFinder.cpp │ ├── GadgetFinder.hpp │ ├── Lockd.user │ ├── Lockd.vcxproj │ ├── Lockd.vcxproj.filters │ ├── Lockd.vcxproj.user │ ├── Macros.props │ ├── Payload.hpp │ ├── Random.cpp │ ├── Random.hpp │ ├── Refresh.cpp │ ├── Refresh.hpp │ ├── Release64.props │ ├── Route.hpp │ ├── Sleep.cpp │ ├── Sleep.hpp │ ├── Source.cpp │ ├── Spoof.asm │ └── main.asm └── include │ ├── MinHook.h │ ├── function_result.hpp │ ├── native.hpp │ ├── syscall.cpp │ ├── syscall.hpp │ ├── utils.cpp │ └── utils.hpp ├── README.md ├── ShellcodeRDI.py ├── images ├── Moneta.gif └── Stable.gif ├── sRDI-master ├── .gitignore ├── DotNet │ ├── App.config │ ├── DotNet.csproj │ ├── Program.cs │ └── Properties │ │ └── AssemblyInfo.cs ├── FunctionTest │ ├── FunctionTest.cpp │ ├── FunctionTest.vcxproj │ ├── FunctionTest.vcxproj.filters │ ├── stdafx.cpp │ ├── stdafx.h │ └── targetver.h ├── LICENSE ├── Native │ ├── Loader.cpp │ ├── Native.vcxproj │ ├── Native.vcxproj.filters │ ├── stdafx.cpp │ ├── stdafx.h │ └── targetver.h ├── PowerShell │ ├── ConvertTo-Shellcode.ps1 │ └── Invoke-Shellcode.ps1 ├── Python │ ├── ConvertToShellcode.py │ ├── Python.pyproj │ └── ShellcodeRDI.py ├── README.md ├── ShellcodeRDI.sln ├── ShellcodeRDI │ ├── GetProcAddressWithHash.h │ ├── ShellcodeRDI.c │ ├── ShellcodeRDI.vcxproj │ ├── ShellcodeRDI.vcxproj.filters │ └── function_link_order.txt ├── TestDLL │ ├── Resource.rc │ ├── TestDLL.vcxproj │ ├── TestDLL.vcxproj.filters │ ├── dllmain.cpp │ └── resource.h ├── bin │ └── .gitignore └── lib │ ├── PowerShell │ ├── Get-FunctionHash.ps1 │ ├── Get-LibSymbols.ps1 │ ├── Get-ObjDump.format.ps1xml │ ├── Get-PEHeader.ps1 │ └── Out-Shellcode.ps1 │ └── Python │ ├── EncodeBlobs.py │ └── FunctionToHash.py └── test.profile /Lockd/Lockd.sln: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd.sln -------------------------------------------------------------------------------- /Lockd/Lockd/CContextHook.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/CContextHook.cpp -------------------------------------------------------------------------------- /Lockd/Lockd/CContextHook.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/CContextHook.hpp -------------------------------------------------------------------------------- /Lockd/Lockd/Definitions.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Definitions.hpp -------------------------------------------------------------------------------- /Lockd/Lockd/GadgetFinder.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/GadgetFinder.cpp -------------------------------------------------------------------------------- /Lockd/Lockd/GadgetFinder.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/GadgetFinder.hpp -------------------------------------------------------------------------------- /Lockd/Lockd/Lockd.user: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Lockd.user -------------------------------------------------------------------------------- /Lockd/Lockd/Lockd.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Lockd.vcxproj -------------------------------------------------------------------------------- /Lockd/Lockd/Lockd.vcxproj.filters: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Lockd.vcxproj.filters -------------------------------------------------------------------------------- /Lockd/Lockd/Lockd.vcxproj.user: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Lockd.vcxproj.user -------------------------------------------------------------------------------- /Lockd/Lockd/Macros.props: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Macros.props -------------------------------------------------------------------------------- /Lockd/Lockd/Payload.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Payload.hpp -------------------------------------------------------------------------------- /Lockd/Lockd/Random.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Random.cpp -------------------------------------------------------------------------------- /Lockd/Lockd/Random.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Random.hpp -------------------------------------------------------------------------------- /Lockd/Lockd/Refresh.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Refresh.cpp -------------------------------------------------------------------------------- /Lockd/Lockd/Refresh.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Refresh.hpp -------------------------------------------------------------------------------- /Lockd/Lockd/Release64.props: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Release64.props -------------------------------------------------------------------------------- /Lockd/Lockd/Route.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Route.hpp -------------------------------------------------------------------------------- /Lockd/Lockd/Sleep.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Sleep.cpp -------------------------------------------------------------------------------- /Lockd/Lockd/Sleep.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Sleep.hpp -------------------------------------------------------------------------------- /Lockd/Lockd/Source.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Source.cpp -------------------------------------------------------------------------------- /Lockd/Lockd/Spoof.asm: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/Spoof.asm -------------------------------------------------------------------------------- /Lockd/Lockd/main.asm: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/Lockd/main.asm -------------------------------------------------------------------------------- /Lockd/include/MinHook.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/include/MinHook.h -------------------------------------------------------------------------------- /Lockd/include/function_result.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/include/function_result.hpp -------------------------------------------------------------------------------- /Lockd/include/native.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/include/native.hpp -------------------------------------------------------------------------------- /Lockd/include/syscall.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/include/syscall.cpp -------------------------------------------------------------------------------- /Lockd/include/syscall.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/include/syscall.hpp -------------------------------------------------------------------------------- /Lockd/include/utils.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/include/utils.cpp -------------------------------------------------------------------------------- /Lockd/include/utils.hpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/Lockd/include/utils.hpp -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/README.md -------------------------------------------------------------------------------- /ShellcodeRDI.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/ShellcodeRDI.py -------------------------------------------------------------------------------- /images/Moneta.gif: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/images/Moneta.gif -------------------------------------------------------------------------------- /images/Stable.gif: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/images/Stable.gif -------------------------------------------------------------------------------- /sRDI-master/.gitignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/.gitignore -------------------------------------------------------------------------------- /sRDI-master/DotNet/App.config: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/DotNet/App.config -------------------------------------------------------------------------------- /sRDI-master/DotNet/DotNet.csproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/DotNet/DotNet.csproj -------------------------------------------------------------------------------- /sRDI-master/DotNet/Program.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/DotNet/Program.cs -------------------------------------------------------------------------------- /sRDI-master/DotNet/Properties/AssemblyInfo.cs: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/DotNet/Properties/AssemblyInfo.cs -------------------------------------------------------------------------------- /sRDI-master/FunctionTest/FunctionTest.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/FunctionTest/FunctionTest.cpp -------------------------------------------------------------------------------- /sRDI-master/FunctionTest/FunctionTest.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/FunctionTest/FunctionTest.vcxproj -------------------------------------------------------------------------------- /sRDI-master/FunctionTest/FunctionTest.vcxproj.filters: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/FunctionTest/FunctionTest.vcxproj.filters -------------------------------------------------------------------------------- /sRDI-master/FunctionTest/stdafx.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/FunctionTest/stdafx.cpp -------------------------------------------------------------------------------- /sRDI-master/FunctionTest/stdafx.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/FunctionTest/stdafx.h -------------------------------------------------------------------------------- /sRDI-master/FunctionTest/targetver.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/FunctionTest/targetver.h -------------------------------------------------------------------------------- /sRDI-master/LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/LICENSE -------------------------------------------------------------------------------- /sRDI-master/Native/Loader.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/Native/Loader.cpp -------------------------------------------------------------------------------- /sRDI-master/Native/Native.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/Native/Native.vcxproj -------------------------------------------------------------------------------- /sRDI-master/Native/Native.vcxproj.filters: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/Native/Native.vcxproj.filters -------------------------------------------------------------------------------- /sRDI-master/Native/stdafx.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/Native/stdafx.cpp -------------------------------------------------------------------------------- /sRDI-master/Native/stdafx.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/Native/stdafx.h -------------------------------------------------------------------------------- /sRDI-master/Native/targetver.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/Native/targetver.h -------------------------------------------------------------------------------- /sRDI-master/PowerShell/ConvertTo-Shellcode.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/PowerShell/ConvertTo-Shellcode.ps1 -------------------------------------------------------------------------------- /sRDI-master/PowerShell/Invoke-Shellcode.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/PowerShell/Invoke-Shellcode.ps1 -------------------------------------------------------------------------------- /sRDI-master/Python/ConvertToShellcode.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/Python/ConvertToShellcode.py -------------------------------------------------------------------------------- /sRDI-master/Python/Python.pyproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/Python/Python.pyproj -------------------------------------------------------------------------------- /sRDI-master/Python/ShellcodeRDI.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/Python/ShellcodeRDI.py -------------------------------------------------------------------------------- /sRDI-master/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/README.md -------------------------------------------------------------------------------- /sRDI-master/ShellcodeRDI.sln: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/ShellcodeRDI.sln -------------------------------------------------------------------------------- /sRDI-master/ShellcodeRDI/GetProcAddressWithHash.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/ShellcodeRDI/GetProcAddressWithHash.h -------------------------------------------------------------------------------- /sRDI-master/ShellcodeRDI/ShellcodeRDI.c: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/ShellcodeRDI/ShellcodeRDI.c -------------------------------------------------------------------------------- /sRDI-master/ShellcodeRDI/ShellcodeRDI.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/ShellcodeRDI/ShellcodeRDI.vcxproj -------------------------------------------------------------------------------- /sRDI-master/ShellcodeRDI/ShellcodeRDI.vcxproj.filters: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/ShellcodeRDI/ShellcodeRDI.vcxproj.filters -------------------------------------------------------------------------------- /sRDI-master/ShellcodeRDI/function_link_order.txt: -------------------------------------------------------------------------------- 1 | LoadDLL 2 | GetProcAddressWithHash -------------------------------------------------------------------------------- /sRDI-master/TestDLL/Resource.rc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/TestDLL/Resource.rc -------------------------------------------------------------------------------- /sRDI-master/TestDLL/TestDLL.vcxproj: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/TestDLL/TestDLL.vcxproj -------------------------------------------------------------------------------- /sRDI-master/TestDLL/TestDLL.vcxproj.filters: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/TestDLL/TestDLL.vcxproj.filters -------------------------------------------------------------------------------- /sRDI-master/TestDLL/dllmain.cpp: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/TestDLL/dllmain.cpp -------------------------------------------------------------------------------- /sRDI-master/TestDLL/resource.h: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/TestDLL/resource.h -------------------------------------------------------------------------------- /sRDI-master/bin/.gitignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/bin/.gitignore -------------------------------------------------------------------------------- /sRDI-master/lib/PowerShell/Get-FunctionHash.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/lib/PowerShell/Get-FunctionHash.ps1 -------------------------------------------------------------------------------- /sRDI-master/lib/PowerShell/Get-LibSymbols.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/lib/PowerShell/Get-LibSymbols.ps1 -------------------------------------------------------------------------------- /sRDI-master/lib/PowerShell/Get-ObjDump.format.ps1xml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/lib/PowerShell/Get-ObjDump.format.ps1xml -------------------------------------------------------------------------------- /sRDI-master/lib/PowerShell/Get-PEHeader.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/lib/PowerShell/Get-PEHeader.ps1 -------------------------------------------------------------------------------- /sRDI-master/lib/PowerShell/Out-Shellcode.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/lib/PowerShell/Out-Shellcode.ps1 -------------------------------------------------------------------------------- /sRDI-master/lib/Python/EncodeBlobs.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/lib/Python/EncodeBlobs.py -------------------------------------------------------------------------------- /sRDI-master/lib/Python/FunctionToHash.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/sRDI-master/lib/Python/FunctionToHash.py -------------------------------------------------------------------------------- /test.profile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/waldo-irc/YouMayPasser/HEAD/test.profile --------------------------------------------------------------------------------