0xcpu / bonomenLinks
BONOMEN - Hunt for Malware Critical Process Impersonation
☆49Updated 4 years ago
Alternatives and similar repositories for bonomen
Users that are interested in bonomen are comparing it to the libraries listed below
Sorting:
- POC for IAT Parsing Payloads☆48Updated 8 years ago
- Exposing the Neutrino EK: All the Naughty Bits (BSidesLV16)☆15Updated 8 years ago
- Swiss Army knife for raw bytes manipulation & interception☆56Updated 2 years ago
- Remote timing attack exploit against most Zeus/Zbot variants including Citadel, Ice9, Zeus 2.3, KINS/ZeusVM etc..☆24Updated 9 years ago
- Full-bin indexation of binary files☆95Updated 7 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated last year
- collection of useful shells for penetration tests☆37Updated 8 years ago
- Yara filetype plugin for Vim.☆14Updated 4 years ago
- Malware analysis tool☆22Updated 4 months ago
- pure Python binary analysis framework☆23Updated 6 years ago
- Scripts for communication with Bunitu Trojan C&Cs☆18Updated 9 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆55Updated 8 years ago
- A Generic Windows Memory Scraping Tool☆71Updated 8 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- SEQ/Ack signature triggered SSL back connect☆10Updated 9 years ago
- API functions for Malware Research☆35Updated 6 years ago
- CVE-2017-5689 Proof-of-Concept exploit☆57Updated 8 years ago
- My personal Automated Malware Analysis Sandboxes and Services☆24Updated 8 years ago
- Web based code browser using clang to provide basic code analysis.☆44Updated 8 years ago
- Rekall Forensics and Incident Response Framework with rVMI extensions☆33Updated 4 years ago
- Linux-KVM with rVMI extensions☆22Updated 8 years ago
- ☆13Updated 9 years ago
- Analysis PE file or Shellcode☆50Updated 9 years ago
- The Alternative Fileless File System☆57Updated 6 years ago
- ☆68Updated 8 years ago
- Here comes the paintrain!☆11Updated 9 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆41Updated 6 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆41Updated 9 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Updated 8 years ago