mobdk / HideCode
Hide code from dnSpy and other C# spying tools
☆40Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for HideCode
- Load PE via XML Attribute☆29Updated 4 years ago
- An attempt to make a LoadLibrary designed for offensive operations, in C# obviously.☆53Updated 2 years ago
- ProcessHollowing via csharp☆12Updated 2 years ago
- A proof of concept of real custom GetProcAddress and GetModuleBaseAddress☆19Updated 2 years ago
- Unhooks Bit Defender from NTDLL and KERNELBASE using a classic technique.☆53Updated last year
- Unhook DLL via cleaning the DLL 's .text section☆8Updated 3 years ago
- Example of async client/server sockets in .NET 5☆15Updated 3 years ago
- One gate to all syscalls!☆23Updated 2 years ago
- Execute shellcode with ZwCreateSection, ZwMapViewOfSection, ZwOpenProcess, ZwMapViewOfSection and ZwCreateThreadEx☆14Updated 3 years ago
- A more advanced free and open .NET obfuscator using dnlib.☆10Updated 2 years ago
- Bypass AMSI☆14Updated 3 years ago
- Extracting Syscall Stub, Modernized☆61Updated 2 years ago
- A repository filled with ideas to break/detect direct syscall techniques☆26Updated 2 years ago
- Modified Version of Melkor @FuzzySecurity capable of creating disposable AppDomains in injected processes.☆27Updated 3 years ago
- C# loader capable of running stage-1 from remote url, file path as well as file share☆14Updated last year
- MappingInjection via csharp☆37Updated 3 years ago
- Upsilon execute shellcode with syscalls - no API like NtProtectVirtualMemory is used☆92Updated 3 years ago
- An unfinished DOUBLEPULSAR clone. Set to be redone at a later date☆14Updated last year
- A library to hook functions !☆22Updated 2 years ago
- ☆48Updated last year
- C code to enable ETW tracing for Dotnet Assemblies☆28Updated 2 years ago
- Halos Gate-based NTAPI Unhooker☆49Updated 2 years ago
- A small PoC using DInvoke, dynamically mapping a DLL and executing Win32 APIs for process injection.☆10Updated 2 years ago
- ☆15Updated 2 years ago
- An example of using Dynamic Invoke to Inject Shellcode using the Early Bird Method.☆11Updated 11 months ago