Analyzing Dotnet Assemblies

Reverse engineer .NET assemblies and executables with dnSpyEx, ILSpy, and de4dot — identifying and unwrapping obfuscators and packers, deobfuscating control flow and string encryption, handling single-file and NativeAOT publishes, and patching IL. Use when a binary is a managed PE, when ILSpy shows mangled names or empty method bodies, or when analyzing .NET malware, a loader, or a Windows application.

trilwu a5b20fa 7.8 KB Updated

File contents

trilwu/secskills/tree/main/secskills-core/skills/analyzing-dotnet-assemblies commit a5b20fa3ae

Frequently asked questions

npx skillmds add trilwu/analyzing-dotnet-assemblies