Cisco-Talos / MBRFilter
Cisco Talos MBR Filter Driver
☆339Updated 7 years ago
Alternatives and similar repositories for MBRFilter:
Users that are interested in MBRFilter are comparing it to the libraries listed below
- SpecuCheck is a Windows utility for checking the state of the software mitigations and hardware against CVE-2017-5754 (Meltdown), CVE-20…☆573Updated 5 years ago
- Cross-platform, open-source shellbag parser☆150Updated 2 years ago
- A YARA-integrated process denial framework for Windows☆398Updated 5 years ago
- Commandline low level file extractor for NTFS☆284Updated 5 years ago
- Tool to disable Intel AMT on Windows☆140Updated 7 years ago
- Virtualbox, VirtualMachine, Cuckoo, Anubis, ThreatExpert, Sandboxie, QEMU, Analysis Tools Detection Tools☆450Updated 6 years ago
- Monitor activity of any driver☆335Updated 4 years ago
- Incident Response & Digital Forensics Debugging Extension☆377Updated 6 years ago
- Brand New Code Injection for Windows☆727Updated 4 years ago
- C++ application that uses memory and code hooks to detect packers☆270Updated 7 years ago
- ☆427Updated last year
- 👁🗨 This script will simulate fake processes of analysis sandbox/VM software that some malware will try to avoid.☆141Updated last year
- Elevation by environment variable expansion☆65Updated 8 years ago
- A reference Device Guard code integrity policy consisting of FilePublisher deny rules for published Device Guard configuration bypasses☆115Updated 7 years ago
- ☆295Updated 8 years ago
- These are highly unstable, buggy, incomplete plugins that are not included with Process Hacker by default.☆333Updated 3 years ago
- rVMI - A New Paradigm For Full System Analysis☆355Updated 7 years ago
- A collection of tools for dealing with TrickBot☆199Updated 7 years ago
- ZeroAccess v3 toolkit☆164Updated 7 years ago
- Extended Process Monitor-like tool based on Event Tracing for Windows☆468Updated 5 years ago
- A rogue-USB-device defeat program for Windows.☆188Updated 2 years ago
- A tool to detect and crash Cuckoo Sandbox☆292Updated 8 months ago
- A list of ways to execute code on Windows using legitimate Windows tools☆306Updated 5 years ago
- WinDBG Anti-RootKit Extension☆626Updated 4 years ago
- TDL4 style rootkit to spoof read/write requests to master boot record☆130Updated 7 years ago
- inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extr…☆283Updated last year
- A GUI version of the classic PoolMon tool☆112Updated 6 years ago
- Decryption Tool☆142Updated 6 years ago
- Process Spawn Control is a Powershell tool which aims to help in the behavioral (process) analysis of malware. PsC suspends newly launche…☆260Updated 3 years ago
- Windows XP 32-Bit Bootkit☆144Updated 10 years ago