Malwation / sentelloLinks
Sentello is python script that simulates the anti-evasion and anti-analysis techniques used by malware.
☆75Updated 4 years ago
Alternatives and similar repositories for sentello
Users that are interested in sentello are comparing it to the libraries listed below
Sorting:
- Winsock accept() Backdoor Implant.☆116Updated 4 years ago
- A small utility to deal with malware embedded hashes.☆53Updated 2 years ago
- Recreating and reviewing the Windows persistence methods☆39Updated 4 years ago
- A repository where I share my injection implemintations☆29Updated 5 years ago
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆130Updated 2 years ago
- Assembly block for finding and calling the windows API functions inside import address table(IAT) of the running PE file.☆76Updated 2 years ago
- An attempt to restore and adapt to modern Win10 version the 'Rootkit Arsenal' original code samples☆74Updated 3 years ago
- Unpacking and decryption tools for the Emotet malware☆45Updated 4 years ago
- The following repository contains a modified version of SUNBURST with cracekd hashes, comments and annotations.☆56Updated 5 years ago
- (Sim)ulate (Ba)zar Loader☆29Updated 5 years ago
- Using Spotify Playlists as Malware CDN☆26Updated 4 years ago
- Process Monitor filter for finding privilege escalation vulnerabilities on Windows☆79Updated 4 years ago
- A simple PoC to demonstrate that is possible to write Non writable memory and execute Non executable memory on Windows☆53Updated 4 years ago
- TrashDBG the world's worse debugger☆23Updated 3 years ago
- Leverage AMSI (Antimalware Scan Interface) technology to aid your analysis. This tool saves all buffers (scripts, .NET assemblies, etc) …☆110Updated 4 years ago
- ☆138Updated last month
- Small visualizator for PE files☆70Updated 2 years ago
- Various code samples and useful tips and tricks from reverse engineering and malware analysis fields.☆106Updated 7 months ago
- PE File Blessing - To continue or not to continue☆87Updated 6 years ago
- Proxy system calls over an RPC channel☆99Updated 3 years ago
- "An Introduction to Windows Exploit Development" is an open sourced, free Windows exploit development course I created for the Southeast …☆41Updated 5 years ago
- Red Team Operator: Malware Development Essentials Course☆99Updated 5 years ago
- Create a Run registry key with direct system calls. Inspired by @Cneelis's Dumpert and SharpHide.☆79Updated 5 years ago
- Assembly HellGate implementation that directly calls Windows System Calls and displays the PPID of the explorer.exe process☆106Updated 2 years ago
- Resources and articles I need to take a look at. Mostly about malware/exploit development and analysis.☆86Updated 3 years ago
- A personalized/enhanced re-creation of the Darkhotel "Double Star" APT exploit chain with a focus on Windows 8.1 and mixed with some of m…☆148Updated 3 years ago
- 64bit Windows 10 shellcode that injects all processes with Meterpreter reverse shells.☆133Updated 2 years ago
- ☆23Updated 5 years ago
- My Malware Analysis Reports☆24Updated 3 years ago
- Quickly search for references to a GUID in DLLs, EXEs, and drivers☆75Updated 4 years ago