CheckPointSW / InviZzzibleLinks
InviZzzible is a tool for assessment of your virtual environments in an easy and reliable way. It contains the most recent and up to date detection and evasion techniques as well as fixes for them.
☆571Updated 3 years ago
Alternatives and similar repositories for InviZzzible
Users that are interested in InviZzzible are comparing it to the libraries listed below
Sorting:
- Dynamic unpacker based on PE-sieve☆769Updated last month
- zer0m0n driver for cuckoo sandbox☆364Updated 10 years ago
- Live hunting of code injection techniques☆383Updated 6 years ago
- Virtualbox, VirtualMachine, Cuckoo, Anubis, ThreatExpert, Sandboxie, QEMU, Analysis Tools Detection Tools☆458Updated 6 years ago
- Quickly debug shellcode extracted during malware analysis☆612Updated 2 years ago
- ☆820Updated 5 years ago
- DRAKVUF Black-box Binary Analysis☆1,167Updated last week
- "Screwed Drivers" centralized information source for code references, links, etc.☆367Updated 5 years ago
- A static analyzer for PE executables.☆1,085Updated last year
- Evasions encyclopedia gathers methods used by malware to evade detection when run in virtualized environment. Methods are grouped into ca…☆432Updated last year
- A memory scanning evasion technique☆891Updated 8 years ago
- Demos of various injection techniques found in malware☆792Updated 3 years ago
- Pinjectra is a C/C++ OOP-like library that implements Process Injection techniques (with focus on Windows 10 64-bit)☆822Updated 3 years ago
- PeaceMaker Threat Detection is a Windows kernel-based application that detects advanced techniques used by malware.☆427Updated 5 years ago
- Script to create templates to use with VirtualBox to make vm detection harder☆759Updated 2 years ago
- Malduck is your ducky companion in malware analysis journeys☆345Updated 3 months ago
- A Binary Genetic Traits Lexer Framework☆516Updated 2 months ago
- A tool to detect and crash Cuckoo Sandbox☆295Updated last year
- Binee: binary emulation environment☆528Updated 2 years ago
- My implementation of enSilo's Process Doppelganging (PE injection technique)☆629Updated 3 years ago
- Standard collection of rules for capa: the tool for enumerating the capabilities of programs☆634Updated 2 weeks ago
- Incident Response & Digital Forensics Debugging Extension☆382Updated 6 years ago
- Portable Executable parsing library (from PE-bear)☆657Updated last week
- Combination of different utilities, have fun!☆215Updated last year
- makin - reveal anti-debugging and anti-VM tricks [This project is not maintained anymore]☆740Updated 6 years ago
- Windows kernel and user mode emulation.☆1,765Updated 6 months ago
- Generating YARA rules based on binary code☆216Updated 4 years ago
- Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)☆583Updated last year
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆257Updated 2 years ago
- metame is a metamorphic code engine for arbitrary executables☆593Updated 6 years ago