TangledWinExec
SharpUnhooker
TangledWinExec | SharpUnhooker | |
---|---|---|
5 | 2 | |
851 | 382 | |
- | - | |
8.5 | 0.0 | |
18 days ago | about 2 years ago | |
C# | C# | |
BSD 3-clause "New" or "Revised" License | - |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
TangledWinExec
- EaDumper: dump Windows NTFS file extended attributes
- Shellcode Reflective DLL Injection This directory is for tools to test sRDI (Shellcode Reflective DLL Injection)
- DarkLoadLibrary: Load DLL with the Dark Load Library technique.
- PPEditor: This is a Kernel-mode WinDbg extension to edit Protection Level for processes.
- TangledWinExec: C# PoCs for investigation of Windows process execution techniques investigation
SharpUnhooker
What are some alternatives?
DcRat - A simple remote tool in C#.
Dependencies - A rewrite of the old legacy software "depends.exe" in C# for Windows devs to troubleshoot dll load dependencies issues.
Sandman - Sandman is a NTP based backdoor for red team engagements in hardened networks.
LegacyWrapper - LegacyWrapper uses a x86 wrapper to call legacy dlls from a 64 bit process (or vice versa).
WMEye - WMEye is a post exploitation tool that uses WMI Event Filter and MSBuild Execution for lateral movement
AntiCrack-DotNet - C# Project contains a plenty of Advanced Anti-Debugging, Anti-Virtualization, Anti Dll-Injection and Anti-Hooking Techniques.
Lunar - A lightweight native DLL mapping library that supports mapping directly from memory
PEASS-ng - PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
QuasarRAT - Remote Administration Tool for Windows [Moved to: https://github.com/quasar/Quasar]
Standard-Toolkit - An update to Component factory's krypton toolkit to support .NET Framework 4.6.2 - 4.8.1 to .NET 6 - 8
Quasar - Remote Administration Tool for Windows