enkomio / RunDotNetDll
A simple utility to list all methods of a given .NET Assembly and to invoke them
☆71Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for RunDotNetDll
- Mario & Luigi - Tools for sniffing Windows Named Pipes communication☆129Updated 8 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆73Updated 10 years ago
- ☆213Updated 6 years ago
- Parsers for custom malware formats ("Funky malware formats")☆92Updated 2 years ago
- Driver Initial Reconnaissance Tool☆120Updated 4 years ago
- A simple API monitor for Windbg☆62Updated 7 years ago
- Bare template for a Kernel Mode Driver☆51Updated 4 years ago
- DLL Injection Library & Tools☆70Updated 8 years ago
- CmdDesktopSwitch is a small utility that lists all windows desktops and provides the option to switch between them. This can be used to i…☆33Updated 8 years ago
- Dynamic PowerShell Analysis Framework Based Upon PowerShell Debugging Functionality☆82Updated last year
- Sample use cases of the .NET native code hooking technique☆206Updated 6 years ago
- ☆107Updated 4 years ago
- The following repository contains a modified version of SUNBURST with cracekd hashes, comments and annotations.☆56Updated 3 years ago
- Ruxcon2016 POC Code☆137Updated 8 years ago
- A proof-of-concept subject interface package (SIP) used to demonstrate digital signature subversion attacks.☆93Updated 6 years ago
- Telsy CTI Research Team☆57Updated 3 years ago
- PoC for persisting .NET payloads in Windows Notification Facility (WNF) state names using low-level Windows Kernel API calls.☆147Updated 5 years ago
- Shellcode emulator written with Unicorn Framework With Process Dump Emulation Environment☆117Updated 4 years ago
- Sacara VM☆122Updated 4 years ago
- Go Lang Portable Executable Parser☆37Updated 3 years ago
- Process reimaging proof of concept code☆95Updated 5 years ago
- Adds a user-mode asynchronous procedure call (APC) object to the APC queue of the specified thread and spoof the Parent Process.☆155Updated 5 years ago
- Implementation of the .NET Profiler DLL hijack in C#☆97Updated 5 years ago
- Pure Python parser for Application Compatibility Shim Databases (.sdb files)☆106Updated 3 years ago
- A Generic Windows Memory Scraping Tool☆70Updated 7 years ago
- Another Repo of Malware. Enjoy. <3☆60Updated 5 years ago
- A tool to exploit .NET DCOM for EoP and RCE. Is fixed in latest versions of the .NET.☆87Updated 10 years ago
- A proof of concept for dynamically loading .net assemblies at runtime with only a minimal convention pre-knowledge☆162Updated 6 years ago
- Analyze and attack windows applications using dll hijacking vulnerabilities☆55Updated 5 years ago