CheckPointSW / InviZzzibleLinks
InviZzzible is a tool for assessment of your virtual environments in an easy and reliable way. It contains the most recent and up to date detection and evasion techniques as well as fixes for them.
☆572Updated 3 years ago
Alternatives and similar repositories for InviZzzible
Users that are interested in InviZzzible are comparing it to the libraries listed below
Sorting:
- Dynamic unpacker based on PE-sieve☆782Updated 2 months ago
- Quickly debug shellcode extracted during malware analysis☆618Updated 2 years ago
- DRAKVUF Black-box Binary Analysis☆1,184Updated 3 weeks ago
- A static analyzer for PE executables.☆1,091Updated last year
- Live hunting of code injection techniques☆383Updated 6 years ago
- "Screwed Drivers" centralized information source for code references, links, etc.☆372Updated 5 years ago
- Standard collection of rules for capa: the tool for enumerating the capabilities of programs☆651Updated last week
- zer0m0n driver for cuckoo sandbox☆367Updated 10 years ago
- Evasions encyclopedia gathers methods used by malware to evade detection when run in virtualized environment. Methods are grouped into ca…☆436Updated last year
- ☆822Updated 5 years ago
- Script to create templates to use with VirtualBox to make vm detection harder☆769Updated 3 years ago
- Pinjectra is a C/C++ OOP-like library that implements Process Injection techniques (with focus on Windows 10 64-bit)☆820Updated 3 years ago
- A Binary Genetic Traits Lexer Framework☆518Updated 3 months ago
- A memory scanning evasion technique☆892Updated 8 years ago
- DRAKVUF Sandbox - automated hypervisor-level malware analysis system☆1,233Updated last week
- PeaceMaker Threat Detection is a Windows kernel-based application that detects advanced techniques used by malware.☆428Updated 5 years ago
- Malduck is your ducky companion in malware analysis journeys☆346Updated 5 months ago
- Demos of various injection techniques found in malware☆795Updated 3 years ago
- Virtualbox, VirtualMachine, Cuckoo, Anubis, ThreatExpert, Sandboxie, QEMU, Analysis Tools Detection Tools☆460Updated 7 years ago
- Portable Executable parsing library (from PE-bear)☆658Updated last month
- Source from VMDE paper, adapted to 2015☆189Updated 7 years ago
- metame is a metamorphic code engine for arbitrary executables☆596Updated 6 years ago
- Combination of different utilities, have fun!☆217Updated last year
- Windows kernel and user mode emulation.☆1,790Updated 7 months ago
- The new Cuckoo Monitor.☆348Updated last year
- My implementation of enSilo's Process Doppelganging (PE injection technique)☆631Updated 3 years ago
- Generating YARA rules based on binary code☆216Updated 4 years ago
- Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)☆584Updated last year
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆261Updated 2 years ago
- Automated Virtual Machine Generation and Cloaking for Cuckoo Sandbox.☆512Updated last year