XaFF (@XaFF-XaFF)
  • Stars
    star
    1,791
  • Global Rank 17,237 (Top 0.6 %)
  • Followers 398
  • Following 15
  • Registered over 6 years ago
  • Most used languages
    C++
    50.0 %
    C#
    43.8 %
    Assembly
    6.3 %
  • Location 🇵🇱 Poland
  • Country Total Rank 190
  • Country Ranking
    C++
    5
    C#
    121

Top repositories

1

Cronos-Rootkit

Cronos is Windows 10/11 x64 ring 0 rootkit. Cronos is able to hide processes, protect and elevate them with token manipulation.
C++
721
star
2

Black-Angel-Rootkit

Black Angel is a Windows 11/10 x64 kernel mode rootkit. Rootkit can be loaded with enabled DSE while maintaining its full functionality.
C++
485
star
3

CaveCarver

CaveCarver - PE backdooring tool which utilizes and automates code cave technique
C++
169
star
4

Kernel-Process-Hollowing

Windows x64 kernel mode rootkit process hollowing POC.
C++
150
star
5

Shellcodev

Shellcodev is a tool designed to help and automate the process of shellcode creation.
C++
100
star
6

ZwProcessHollowing

ZwProcessHollowing is a x64 process hollowing project which uses direct systemcalls, dll unhooking and RC4 payload decryption
C++
66
star
7

Cronos-Crypter

Cronos Crypter is an simple example of crypter created for educational purposes.
C#
18
star
8

AMSI-Bypass

Rasta's mouse AMSI patch but with function that makes it undetectable.
C#
13
star
9

MBR-Overwrite-with-custom-message

Overwrite MBR and add own custom message
C++
13
star
10

2Simple-Dll-Injector

C# DLL Injector written as simple as possible
C#
13
star
11

Watykanczyk

Remake znanego wirusa Watykańczyka w C#
C#
12
star
12

Heap-Injection

Example of C# heap injector for x64 and x86 shellcodes
C#
12
star
13

2Simple-Keylogger

Simple keylogger written in C# which is ready for modifications.
C#
12
star
14

WinREPL

WinREPL is a "read-eval-print loop" shell on Windows that is useful for testing/learning x86 and x64 assembly.
C++
9
star
15

Assembler-MessageBox

An Assembly x86 code that shows Windows MessageBox kept as simple as possible.
Assembly
8
star
16

Discord-Webhook-Cannon

Discord Webhook Cannon is a C# multithreaded, open-source Discord Webhook flooder. It can be used to flood webhooks which are used in malware.
C#
8
star
17

Powiadom-o-RTX

0
star