hexfati / SharpDllLoader
A simple C# executable that invokes an arbitrary method of an arbitrary C# DLL
☆127Updated 7 months ago
Related projects ⓘ
Alternatives and complementary repositories for SharpDllLoader
- An automatic unpacker and logger for DotNet Framework targeting files☆248Updated last year
- Parse .NET executable files.☆74Updated 3 weeks ago
- Small tool to convert beteween the PE alignments (raw and virtual).☆81Updated last year
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆113Updated last year
- Automatically identify and extract potential anti-debugging techniques used by malware.☆116Updated 2 weeks ago
- HashDB API hash lookup plugin for IDA Pro☆296Updated 3 weeks ago
- Simple windows API logger☆98Updated 5 years ago
- Kernel Security driver used to block past, current and future process injection techniques on Windows Operating System.☆147Updated 2 years ago
- Static Binary Instrumentation tool for Windows x64 executables☆180Updated 2 weeks ago
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆148Updated 10 months ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆158Updated this week
- ☆99Updated 11 months ago
- a PE Loader and Windows API tracer. Useful in malware analysis.☆137Updated 2 years ago
- IDA Pro plugin for recognizing known hashes of API function names☆81Updated 2 years ago
- Executing a .NET Assembly from C++ in Memory (CLR Hosting)☆186Updated 7 years ago
- JITM is an automated tool to bypass the JIT Hooking protection on a .NET sample.☆49Updated 3 years ago
- Files for the packer tutorial☆69Updated 3 years ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆223Updated 3 months ago
- capemon: CAPE's monitor☆100Updated 2 weeks ago
- ☆96Updated last year
- A manual system call library that supports functions from both ntdll.dll and win32u.dll☆107Updated last year
- A DTrace on Windows Reimplementation☆328Updated last week
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆109Updated 3 months ago
- Set of antianalysis techniques found in malware☆129Updated last year
- Run Processes as PPL with ELAM☆146Updated 2 years ago
- PoC memory injection detection agent based on ETW, for offensive and defensive research purposes☆253Updated 3 years ago
- ☆290Updated 3 years ago
- Robust Automated Malware Unpacker☆84Updated last year
- An IDA Pro extension for easier (malware) reverse engineering☆110Updated 2 years ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆258Updated 3 weeks ago