MirekVales / MVsDotNetAMSIClientLinks
🛡️ Convenient .NET Library for Invoking Antimalware Scan Interface (AMSI)
☆18Updated 3 years ago
Alternatives and similar repositories for MVsDotNetAMSIClient
Users that are interested in MVsDotNetAMSIClient are comparing it to the libraries listed below
Sorting:
- ☆11Updated 2 years ago
- .NET assembly local/remote loading/injection into memory.☆135Updated 6 years ago
- A library to hook functions !☆19Updated 3 years ago
- A lightweight .NET assembly dependency merger that uses dnLib and 7zip's LZMA SDK for compressing dependant assemblies.☆105Updated last year
- Tunnellable HTTP/HTTPS socks5 proxy written in C#☆27Updated 4 years ago
- Hide code from dnSpy and other C# spying tools☆42Updated 5 years ago
- Add export function and convert exe to dll☆26Updated 5 years ago
- A simple POC to demonstrate the power of .NET debugging for injection☆73Updated 5 years ago
- A collection of weird ways to execute unmanaged code in .NET☆174Updated 4 years ago
- Executing a .NET Assembly from C++ in Memory (CLR Hosting)☆200Updated 9 years ago
- Load a fresh new copy of ntdll.dll via file mapping to bypass API inline hook.☆62Updated 4 years ago
- Project to use Golang inside C#☆79Updated 5 years ago
- My personal shellcode loader☆32Updated 2 years ago
- Detect BypassUAC using AMSI☆27Updated 9 months ago
- Command line & PPID spoofing☆27Updated 2 years ago
- A small shellcode loader library written in C#☆48Updated 3 years ago
- 32 bit process inject shellcode to 32 bit process and 64 bit process☆35Updated 2 years ago
- ☆204Updated 3 years ago
- Small POC written in C# that performs shellcode injection on x64 processes using direct syscalls as a way to bypass user-land EDR hooks.☆84Updated 5 years ago
- Simple windows rpc server for research purposes only☆83Updated 3 years ago
- Unhooks Bit Defender from NTDLL and KERNELBASE using a classic technique.☆57Updated 2 years ago
- Just another version of the custom stack call from Proxy-Function-Calls-For-ETwTI☆34Updated 2 years ago
- inject or convert shellcode to PE☆41Updated 6 years ago
- Hide .Net assembly into png images☆36Updated 6 years ago
- Run any executable as SYSTEM account (no service required)☆139Updated last year
- Windows PE - TLS (Thread Local Storage) Injector in C/C++☆106Updated 4 years ago
- Execute .Net assemblies using Rundll32.exe☆113Updated 4 years ago
- Load PE via XML Attribute☆32Updated 5 years ago
- Kill Protected Process Light Process (include av)☆58Updated 2 years ago
- Herpaderply Hollowing - a PE injection technique, hybrid between Process Hollowing and Process Herpaderping☆64Updated 3 years ago