BorjaMerino / DoublePulsar-VolatilityLinks
Volatility plugin to help identify DoublePulsar implant by listing the array of pointers SrvTransaction2DispatchTable from the srv.sys driver.
☆16Updated 8 years ago
Alternatives and similar repositories for DoublePulsar-Volatility
Users that are interested in DoublePulsar-Volatility are comparing it to the libraries listed below
Sorting:
- Simple DDE object detector☆56Updated 7 years ago
- An offensive Powershell console☆30Updated 9 years ago
- Yara intergrated into BurpSuite☆48Updated 9 years ago
- WhiteBox CMS analysis☆68Updated 2 years ago
- Comprehensive Pivoting Framework☆20Updated 9 years ago
- Development guide for Volatility Plugins☆23Updated 8 years ago
- SMB Auto authentication Vulnerability☆34Updated 9 years ago
- SMTP server / sinkhole for collecting spam☆45Updated 7 years ago
- A tool to catch spoofed NBNS responses.☆50Updated 7 years ago
- Parses Java Cache IDX files☆39Updated 7 years ago
- Automated Exploit Toolkit for CVE-2015-6095 and CVE-2016-0049☆51Updated 8 years ago
- A ready to deploy docker container for a fresh sandbox for on-the-fly malware analysis☆42Updated 8 years ago
- Material from our CANAPE workshop