stellarbear / YaraSharp
C# wrapper around the Yara pattern matching library
☆39Updated 3 years ago
Alternatives and similar repositories for YaraSharp:
Users that are interested in YaraSharp are comparing it to the libraries listed below
- .NET wrapper for libyara built in C++ CLI used to easily incorporate yara into .NET projects☆52Updated 7 months ago
- CmdDesktopSwitch is a small utility that lists all windows desktops and provides the option to switch between them. This can be used to i…☆34Updated 8 years ago
- Bare template for a Kernel Mode Driver☆51Updated 5 years ago
- Implementation of the .NET Profiler DLL hijack in C#☆98Updated 6 years ago
- A simple utility to list all methods of a given .NET Assembly and to invoke them☆73Updated 3 years ago
- An example pattern in C# for using WMI to monitor process creation and termination events.☆52Updated 6 years ago
- A pattern for client/server communication via Named Pipes via C#☆96Updated 6 years ago
- A manual system call library that supports functions from both ntdll.dll and win32u.dll☆109Updated last year
- JITM is an automated tool to bypass the JIT Hooking protection on a .NET sample.☆52Updated 4 years ago
- Explore .NET Processes and Dump files☆116Updated 4 years ago
- Framework for C# development☆72Updated this week
- Win32 memory leak detector with ETW☆41Updated 7 years ago
- Mario & Luigi - Tools for sniffing Windows Named Pipes communication☆129Updated 8 years ago
- DotNext 2019 St. Petersburg Talk Demos☆40Updated 5 years ago
- Simple packer for arbitrary data using only .NET API calls. Produces a unique signature with every usage. Standalone program and library.…☆91Updated 5 years ago
- ☆62Updated 3 weeks ago
- Small visualizator for PE files☆67Updated last year
- A multi-platform .Net wrapper library for the native Yara library.☆38Updated last year
- Dump certificates from PE files in different formats☆38Updated last year
- ☆213Updated 6 years ago
- Diff tool for comparing symbols in PDB files☆84Updated 5 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆75Updated 10 years ago
- A ready-made template for a project based on libpeconv.☆46Updated last month
- Library of tools and examples for loading/bootstrapping managed code from unmanaged code in .NET☆63Updated 5 years ago
- Metadata hash incorporating the Rich Header for robustness against packing and other malware tricks☆64Updated 3 years ago
- Uses WMI Event Win32_ModuleLoadTrace to monitor module loading. Provides filters, and detailed data. Has an option to monitor for CLR Inj…☆41Updated 5 years ago
- Learning Process Injection and Hollowing techniques☆41Updated 2 years ago
- The following repository contains a modified version of SUNBURST with cracekd hashes, comments and annotations.☆56Updated 4 years ago
- Evil Reflective DLL Injection Finder☆47Updated 6 years ago
- ☆43Updated last year