Open-Source Remote Administration Tool For Windows C# (RAT)
Changing values to bypass windows defender C#
Download a payload and make it run from registry without droppng.
A simple windows ransomware simulator that will rename .TXT files a ransomware extension to simulate ransomware behavior for testing various monitoring tools
Download a .NET payload and run it on memory
Injecting shellcode into a process memory and executing it in C#
ZeroPointSecurity / Covenant
Forked from cobbr/CovenantCovenant is a collaborative .NET C2 framework for red teamers.
Simple example of how to remove all malwares from disk and registry.
Download payload to disk and install it to startup then melt.
NYAN-x-CAT / DInjector
Forked from snovvcrash/DInjectorCollection of shellcode injection techniques packed in a D/Invoke weaponized DLL
ZeroPointSecurity / SharpSploit
Forked from cobbr/SharpSploitSharpSploit is a .NET post-exploitation library written in C#
DnaSec / PEASS-ng
Forked from peass-ng/PEASS-ngPEASS - Privilege Escalation Awesome Scripts SUITE (with colors)