michaelweber / CSharpSourceObfuscator
A C# Solution Source Obfuscator for avoiding AV signatures with minimal user interaction. Powered by the Roslyn C# library.
☆75Updated last month
Alternatives and similar repositories for CSharpSourceObfuscator:
Users that are interested in CSharpSourceObfuscator are comparing it to the libraries listed below
- ☆128Updated last year
- C# porting of SysWhispers2. It uses SharpASM to find the code caves for executing the system call stub.☆105Updated 2 years ago
- Halos Gate-based NTAPI Unhooker☆52Updated 3 years ago
- ☆58Updated 3 months ago
- My implementation of Halo's Gate technique in C#☆54Updated 3 years ago
- Tool for playing with Windows Access Token manipulation.☆54Updated 2 years ago
- UAC Bypass via CMUACUtil & PEB Enumeration, Undetected for now.☆47Updated last year
- A collection of (even more) alternative shellcode callback methods in CSharp☆73Updated 6 months ago
- Repository to gather the .NET malware I will be developing☆18Updated last month
- Cobaltstrike Reflective Loader with Synthetic Stackframe☆117Updated 3 months ago
- Bypassing Amsi using LdrLoadDll☆44Updated 4 months ago
- Patch AMSI and ETW in remote process via direct syscall☆81Updated 3 years ago
- I have documented all of the AMSI patches that I learned till now☆72Updated last month
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆61Updated last year
- ☆78Updated last year
- early cascade injection PoC based on Outflanks blog post, in rust☆58Updated 6 months ago
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆87Updated 3 months ago
- ☆99Updated last year
- ☆122Updated last year
- ☆39Updated 2 years ago
- ☆105Updated 3 months ago
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆84Updated 2 years ago
- Find DLLs with RWX section☆80Updated last year
- ☆123Updated last year
- ☆110Updated 5 months ago
- Threadless shellcode injection tool☆64Updated 9 months ago
- Lateral Movement via the .NET Profiler☆81Updated 5 months ago
- Simple BOF to read the protection level of a process☆114Updated last year
- Sleep Obfuscation☆45Updated 2 years ago
- Windows NTLM hash dump utility written in C language, that supports Windows and Linux. Hashes can be dumped in realtime or from already s…☆62Updated last year