rustdsplit

AV evasion tool

Re-implements a method to bypass signature-based AV detection by splitting a file into two halves and modifying one byte in each half to evade detection.

At some point, I learned about a method to perform a binary search on a file in order to identify its AV signature and change it to bypass signature-based AV. The tool I used back then is gone, so I wrote this.

GitHub

35 stars
2 watching
5 forks
Language: Rust
last commit: about 6 years ago
antivirusantivirus-evasionctposceosce-preprust

Related projects:

RepositoryDescriptionStars
ed1s0nz/coolA tool designed to bypass antivirus software and evade detection.691
govolution/avetAn AntiVirus Evasion Tool allowing developers to experiment with and create various evasion techniques for Windows executable files1,660
0xsp-srd/mortarA toolset designed to evade detection by security products and execute malware safely1,421
govolution/avetosxAn AntiVirus Evasion Tool for Windows systems using assembly shellcodes and encoding techniques.4
joshfaust/alarisA low-level shellcode loader that defeats modern EDR systems by utilizing various evasion techniques and encryption.891
hangingsword/houqingA tool for generating and uploading malicious executable files to evade antivirus detection206
arvanaghi/checkpleaseA collection of sandbox evasion modules written in various programming languages.904
kyleavery/aceldrA Cobalt Strike memory scanner evasion technique using code obfuscation and encryption to evade detection.887
georgepatsias/scarecrow-cobaltstrikeA tool for integrating Cobalt Strike payloads with ScareCrow to evade antivirus detection and improve evasion capabilities.457
penumbra-x/rquestAn asynchronous HTTP client with TLS and fingerprint spoofing capabilities112
tanc7/exocet-av-evasionA tool designed to evade antivirus detection and deliver payloads836
zha0gongz1/desertfoxA Go-based tool for loading and executing malicious shellcode while evading anti-virus detection125
k8gege/scrunA tool designed to bypass antivirus software and load malicious shellcode into processes177
b4rtik/hiddenpowershelldllA PowerShell evasion tool that uses a DLL to bypass security measures and execute a hidden stager93
hegusung/avsignseekA tool to help identify the location of antivirus signatures in binary payloads312