ArtemBaranov / WindowsRootkitsGuideLinks
☆72Updated 11 months ago
Alternatives and similar repositories for WindowsRootkitsGuide
Users that are interested in WindowsRootkitsGuide are comparing it to the libraries listed below
Sorting:
- ☆122Updated 2 weeks ago
- BSides Prishtina 2024 Malware Development and Persistence workshop☆124Updated 2 weeks ago
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆39Updated 10 months ago
- Vibe Malware Triage - MCP server for static PE analysis.☆74Updated last month
- This is practice VM for malware development☆174Updated 2 months ago
- ☆164Updated 10 months ago
- Comprehensive Windows Syscall Extraction & Analysis Framework☆159Updated 4 months ago
- A CIA tradecraft technique to asynchronously detect when a process is created using WMI.☆137Updated 2 years ago
- ☆161Updated 7 months ago
- ☆39Updated last year
- ☆26Updated 9 months ago
- Python tool to check rootkits in Windows kernel☆204Updated 4 months ago
- The result of research and investigation of malware development tricks, techniques, evasion, cryptography and linux malware☆66Updated 2 months ago
- Lena's scripts/code/resources for malware analysis☆26Updated last year
- ☆112Updated last month
- A small program written in C that is designed to load 32/64-bit shellcode and allow for execution or debugging. Can also output PE files …☆167Updated last year
- ☆155Updated 8 months ago
- A collection of small scripts and tools for deobfuscation and malware analysis.☆66Updated 2 years ago
- Virus.xcheck is a Python tool designed to bulk verify the existence of file hashes in the Virus Exchange database and fetch download URLs…☆59Updated 3 months ago
- ☆34Updated 2 years ago
- ☆20Updated 2 months ago
- Configuration Extractors for Malware☆122Updated 8 months ago
- ☆108Updated last year
- Chiron Unpacker, developed by the Malwation MTR Team, is an Unpacker for Packers using the Assembly.Load function.☆22Updated last year
- ☆105Updated last year
- SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and up…☆260Updated 3 months ago
- Analyse MSI files for vulnerabilities☆140Updated last year
- A Repository to Track Anti-Forensic Techniques☆117Updated 2 years ago
- ☆24Updated 10 months ago
- Cheat sheet to detect and remove linux kernel rootkit☆77Updated last year