Differential Analysis of Malware in Memory
☆215Apr 16, 2017Updated 9 years ago
Alternatives and similar repositories for DAMM
Users that are interested in DAMM are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆195Sep 12, 2017Updated 8 years ago
- Discover potential timestamps within the Windows Registry☆19Apr 22, 2014Updated 12 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆49May 31, 2017Updated 9 years ago
- Analysis PE file or Shellcode☆50Jul 28, 2016Updated 9 years ago
- Collection of different ways to execute code outside of the expected entry points☆16Aug 4, 2013Updated 12 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Web interface for the Volatility Memory Forensics Framework☆259Nov 21, 2017Updated 8 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆268Jun 15, 2021Updated 5 years ago
- A short and small memory forensics helper.☆52Oct 18, 2017Updated 8 years ago
- Malware Fragmentation Tool its a tool that simply fragment the PE file and it can disassemble the PE file, etc this tool very useful for…☆37Nov 22, 2015Updated 10 years ago
- The official repo of BSIS☆14Feb 16, 2012Updated 14 years ago
- Windows Live Artifacts Acquisition Script☆192Jun 20, 2022Updated 4 years ago
- Web App for Volatility framework☆387Jan 13, 2026Updated 6 months ago
- A Rekall interactive document for a Memory Analysis workshop/course.☆43Mar 8, 2017Updated 9 years ago
- ☆84Jul 5, 2016Updated 10 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- x64 Windows Software Fault Injection Tool☆17Dec 2, 2017Updated 8 years ago
- PyAna - Analyzing the Windows shellcode☆247Feb 16, 2016Updated 10 years ago
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆211Mar 12, 2025Updated last year
- Frontend for Codex Gigas☆21Mar 6, 2017Updated 9 years ago
- inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extr…☆296Sep 30, 2023Updated 2 years ago
- Yara rules☆49Jan 28, 2014Updated 12 years ago
- Process HTTP Pcaps With YARA☆108Jul 29, 2013Updated 12 years ago
- LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices…☆2,020Apr 5, 2026Updated 3 months ago
- Packet Acumen☆19Aug 20, 2014Updated 11 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Python script to decode common encoded PowerShell scripts☆216Jun 13, 2018Updated 8 years ago
- Rekall Memory Forensic Framework☆2,003Oct 18, 2020Updated 5 years ago
- map file generator for intel x86 binary based on flirt signature☆83May 2, 2016Updated 10 years ago
- Protocol Analysis/Decoder Framework☆496Dec 19, 2022Updated 3 years ago
- onigiri - remote malware triage script☆24Nov 5, 2015Updated 10 years ago
- Malware Behavior Analyzer☆158Jun 1, 2017Updated 9 years ago
- Modified edition of cuckoo☆273Sep 9, 2019Updated 6 years ago
- ThreatTracker is a Python script designed to monitor and generate alerts on given sets of indicators of compromise (IOCs) indexed by a se…☆71Mar 9, 2015Updated 11 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆88Oct 6, 2017Updated 8 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Modular file scanning/analysis framework☆620Oct 8, 2019Updated 6 years ago
- ☆435May 3, 2023Updated 3 years ago
- Bit9 + Carbon Black Threat Intelligence☆81Mar 9, 2016Updated 10 years ago
- ☆16Jan 31, 2015Updated 11 years ago
- Malware static analysis framework☆185Apr 1, 2020Updated 6 years ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- Static and automated/dynamic malware analysis☆48Sep 28, 2015Updated 10 years ago