VolDiff: Malware Memory Footprint Analysis based on Volatility
☆195Sep 12, 2017Updated 8 years ago
Alternatives and similar repositories for VolDiff
Users that are interested in VolDiff are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆49May 31, 2017Updated 9 years ago
- Web interface for the Volatility Memory Forensics Framework☆259Nov 21, 2017Updated 8 years ago
- Web App for Volatility framework☆387Jan 13, 2026Updated 6 months ago
- Differential Analysis of Malware in Memory☆215Apr 16, 2017Updated 9 years ago
- Windows Live Artifacts Acquisition Script☆192Jun 20, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Modified edition of cuckoo☆273Sep 9, 2019Updated 6 years ago
- Utilities for the memory forensics framework☆22Jul 31, 2018Updated 7 years ago
- Malware Fragmentation Tool its a tool that simply fragment the PE file and it can disassemble the PE file, etc this tool very useful for…☆37Nov 22, 2015Updated 10 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆44Mar 11, 2016Updated 10 years ago
- A short and small memory forensics helper.☆52Oct 18, 2017Updated 8 years ago
- Static and automated/dynamic malware analysis☆48Sep 28, 2015Updated 10 years ago
- Malware Analysis Tool using Function Level Fuzzy Hashing☆192Dec 19, 2015Updated 10 years ago
- onigiri - remote malware triage script☆24Nov 5, 2015Updated 10 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Jul 2, 2014Updated 12 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Incident Response Forensic Framework☆608Nov 20, 2019Updated 6 years ago
- Frontend for Codex Gigas☆21Mar 6, 2017Updated 9 years ago
- Rekall Memory Forensic Framework☆2,002Oct 18, 2020Updated 5 years ago
- A tool to detect and crash Cuckoo Sandbox☆297Jul 22, 2024Updated last year
- A tool to retrieve malware directly from the source for security researchers.☆564Jul 27, 2017Updated 8 years ago
- C++ application that uses memory and code hooks to detect packers☆275Mar 5, 2018Updated 8 years ago
- Autoruns plugin for the Volatility framework☆123Jul 18, 2019Updated 7 years ago
- Script to perform Linux Memory Diff Analysis Using Volatility☆24Sep 20, 2015Updated 10 years ago
- Automation for VirusTotal☆31May 6, 2016Updated 10 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆268Jun 15, 2021Updated 5 years ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- List of scripts used for malware analysis☆15Aug 10, 2015Updated 10 years ago
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆211Mar 12, 2025Updated last year
- Small tool for disassembling shellcode (using objdump)☆149Jun 19, 2022Updated 4 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆439Feb 24, 2023Updated 3 years ago
- Validate IOC from MISP ; Export results and iocs to SIEM and sensors using syslog and CEF format☆14Sep 13, 2016Updated 9 years ago
- ☆16Jan 31, 2015Updated 11 years ago
- Malcom - Malware Communications Analyzer☆1,171Nov 29, 2017Updated 8 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Honeypot Intelligence with Splunk☆255Oct 18, 2018Updated 7 years ago
- Comae Hibernation File Decompressor☆159Apr 1, 2023Updated 3 years ago
- Some IR notes☆72Jul 23, 2016Updated 9 years ago
- Queries to parse sysmon event log file with microsoft logparser☆60Mar 31, 2015Updated 11 years ago
- Malicious HTTP traffic explorer☆724Mar 16, 2023Updated 3 years ago
- Honeybrid is a network application built to 1) administrate network of honeypots, and 2) transparently redirect live network sessions (TC…☆31Jan 8, 2019Updated 7 years ago
- Yet another AV evasion tool☆117Jan 3, 2022Updated 4 years ago