Merge pull request #60 from LuxNoBulIshit/master

Create ilasm.yml
This commit is contained in:
Oddvar Moe 2020-03-17 10:57:53 +01:00 committed by GitHub
commit 187786469c
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

37
yml/OSBinaries/ilasm.yml Normal file
View File

@ -0,0 +1,37 @@
---
Name: ilasm.exe
Description: used for compile c# code into dll or exe.
Author: Hai vaknin (lux)
Created: 17/03/2020
Commands:
- Command:
ilasm.exe C:\public\test.txt /exe
Description: Binary file used by .NET to compile c# code to .exe
Usecase: Compile attacker code on system. Bypass defensive counter measures.
Category: Compile
Privileges required:User
MitreID: T1127
MitreLink: https://attack.mitre.org/techniques/T1127/
OperatingSystem: Windows 10,7
- Command: ilasm.exe C:\Users\חי\Desktop\test.txt /dll
Description: Binary file used by .NET to compile c# code to dll
Usecase: A description of the usecase
Category: Compile
Privileges required:User
MitreID: T1127
MitreLink: https://attack.mitre.org/techniques/T1127/
Full_Path:
- Path:
C:\Windows\Microsoft.NET\Framework\v4.0.30319\ilasm.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\ilasm.exe
Code_Sample:
Code:
1.ilasm.exe C:\public\test.txt /exe
2.ilasm.exe C:\Users\חי\Desktop\test.txt /dll
Acknowledgement:
- Person:
Hai Vaknin(Lux) https://github.com/LuxNoBulIshit
Lior Adar
---