A lightweight native DLL mapping library that supports mapping directly from memory
Features
- Imports and delay imports are resolved
- Relocations are performed
- Image sections are mapped with the correct page protection
- Exception handlers are initialised
- A security cookie is generated and initialised
- DLL entry point and TLS callbacks are called
Getting started
The example below demonstrates a simple implementation of the library
var libraryMapper = new LibraryMapper(process, dllBytes);
// Map the DLL into the process
libraryMapper.MapLibrary();
// Unmap the DLL from the process
libraryMapper.UnmapLibrary();
Constructors
LibraryMapper(Process, Memory<byte>)
LibraryMapper(Process, string)
Properties
DllBaseAddress
Methods
MapLibrary()
UnmapLibrary()
Caveats
- Mapping requires the presence of a PDB for ntdll.dll, and, so, the library will automatically download the latest version of this PDB from the Microsoft symbol server and cache it in
%appdata%/Lunar/Dependencies
via KitPloit
More info
- Pentest Tools Open Source
- Pentest Recon Tools
- New Hack Tools
- Black Hat Hacker Tools
- Hacking Tools
- Best Pentesting Tools 2018
- Hacking Tools Usb
- Hacking Tools
- Hackers Toolbox
- Hacker Techniques Tools And Incident Handling
- Pentest Tools Subdomain
- Best Hacking Tools 2019
- Hacking Tools 2020
- Free Pentest Tools For Windows
- Wifi Hacker Tools For Windows
- Hacker Tools For Ios
- How To Hack
No comments:
Post a Comment