Maff1t / InjectionTracer
PINTool to help analyzing malware that uses process injection
☆14Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for InjectionTracer
- ☆33Updated last year
- ☆24Updated last month
- Standalone Metasploit-like XOR encoder for shellcode☆46Updated 6 months ago
- Cross-platform malware development library for anti-analysis techniques☆24Updated 3 years ago
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆42Updated last year
- Here are some of my malware reversing papers that I will be publishing☆31Updated 2 years ago
- General malware analysis stuff☆35Updated 2 months ago
- Dataset of packed ELF samples☆17Updated last year
- ☆22Updated 5 months ago
- ☆34Updated last month
- ☆26Updated 3 weeks ago
- Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE☆64Updated last year
- ☆66Updated 11 months ago
- Invoke-DetectItEasy is a wrapper for excelent tool called Detect-It-Easy. This PS module is very useful for Threat Hunting and Forensics.☆23Updated 2 years ago
- NT AUTHORITY\SYSTEM☆38Updated 4 years ago
- Notes some analysis related to VidarStealer sample☆14Updated 6 months ago
- An initial proof of concept of a bootkit based on Cr4sh's DMABackdoorBoot☆59Updated last year
- UAC bypass abusing WinSxS in "wusa.exe". Referred from and similar to: https://github.com/L3cr0f/DccwBypassUAC , Kudos to L3cr0f and Fuz…☆32Updated 3 years ago
- .NET deobfuscator and unpacker (with a control flow unflattener for DoubleZero added).☆28Updated 2 years ago
- Tools developed by the Zscaler ThreatLabz Threat Intelligence team☆62Updated last week
- Recreating and reviewing the Windows persistence methods☆39Updated 3 years ago
- Enabled / Disable LSA Protection via BYOVD☆62Updated 2 years ago
- call gates as stable comunication channel for NT x86 and Linux x86_64☆30Updated last year
- ☆27Updated 3 months ago
- Giga-byte Control Center (GCC) is a software package designed for improved user experience of Gigabyte hardware, often found in gaming an…☆30Updated last year
- Unpacker for donut shellcode☆10Updated 4 years ago
- An injector that use PT_LOAD technique☆11Updated last year
- One Click Tool to Scan All the Enabled Protection of current Windows NT Kernel☆43Updated last year
- Small visualizator for PE files☆67Updated last year
- CVE-2021-29337 - Privilege Escalation in MODAPI.sys (MSI Dragon Center)☆29Updated 3 years ago