0xcpu / bonomenLinks
BONOMEN - Hunt for Malware Critical Process Impersonation
☆50Updated 4 years ago
Alternatives and similar repositories for bonomen
Users that are interested in bonomen are comparing it to the libraries listed below
Sorting:
- POC for IAT Parsing Payloads☆48Updated 8 years ago
- Exposing the Neutrino EK: All the Naughty Bits (BSidesLV16)☆15Updated 9 years ago
- An offensive bash script which tries to find GENERIC privesc vulnerabilities and issues.☆13Updated 8 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 8 years ago
- Print the strings of encoded printable characters in files☆12Updated 10 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Swiss Army knife for raw bytes manipulation & interception☆56Updated 2 years ago
- collection of useful shells for penetration tests☆37Updated 8 years ago
- A Generic Windows Memory Scraping Tool☆71Updated 8 years ago
- Emofishes is a collection of proof-of-concepts that help improve, bypass or detect virtualized execution environments (focusing on the on…☆15Updated 2 years ago
- Yara filetype plugin for Vim.☆14Updated 4 years ago
- Scripts for communication with Bunitu Trojan C&Cs☆19Updated 10 years ago
- pure Python binary analysis framework☆22Updated 7 years ago
- Full-bin indexation of binary files☆95Updated 7 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆40Updated 6 years ago
- ☆13Updated 9 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 5 years ago
- The Alternative Fileless File System☆57Updated 6 years ago
- A ready to deploy docker container for a fresh sandbox for on-the-fly malware analysis☆43Updated 8 years ago
- Random stuff for FlareOn☆14Updated 7 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆56Updated 8 years ago
- This script is used for extracting DDE in docx and xlsx☆12Updated 7 years ago
- Mapping of Binaries that allows Arbitrary Code Execution☆26Updated 7 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆41Updated 9 years ago
- Automatically exported from code.google.com/p/malware-lu☆56Updated 6 years ago
- Linux-KVM with rVMI extensions☆22Updated 8 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- Randomly changes Win32/64 PE Files for 'safer' uploading to malware and sandbox sites.☆130Updated 12 years ago
- API functions for Malware Research☆35Updated 6 years ago
- Memory searching utilities☆43Updated 12 years ago