MohitDabas / malwinx
Just a normal flask web app to understand win32api with code snippets and references.
☆72Updated 5 years ago
Alternatives and similar repositories for malwinx:
Users that are interested in malwinx are comparing it to the libraries listed below
- Another Repo of Malware. Enjoy. <3☆60Updated 5 years ago
- Static based decoders for malware samples☆92Updated 4 years ago
- ☆134Updated 6 years ago
- hopefully a source-to-source deobfuscator, aiming at deobfuscating common scripts languages such as Powershell, VBA and Javascript. Curre…☆40Updated 5 years ago
- A one-click tool to inject jobs into the BITS queue (Background Intelligent Transfer Service), allowing arbitrary program execution as th…☆98Updated 5 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 6 years ago
- ☆57Updated 4 years ago
- Exercises for C# Workshop at Wild West Hackin' Fest 2018 & 2019.☆64Updated 5 years ago
- A C++ POC for process injection using NtCreateSectrion, NtMapViewOfSection and RtlCreateUserThread. Credit to @spotheplanet for his notes…☆43Updated 3 years ago
- A summary about different projects/presentations/tools to test how to evade malware sandbox systems☆48Updated 6 years ago
- Malware similarity platform with modularity in mind.☆78Updated 3 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 6 years ago
- TA505 unpacker Python 2.7☆47Updated 4 years ago
- Telsy CTI Research Team☆57Updated 4 years ago
- a modified version base on Tracecorn☆20Updated 5 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆38Updated last year
- ☆109Updated 6 years ago
- Tool to decompress data from Windows 10 page files and memory dumps, that has been compressed by the Windows 10 memory manager.☆49Updated 5 years ago
- MoP - "Master of Puppets" - Advanced malware tracking framework☆82Updated 5 months ago
- Tool to make in memory man in the middle☆124Updated 6 years ago
- Dynamic PowerShell Analysis Framework Based Upon PowerShell Debugging Functionality☆83Updated last year
- Pypykatz agent implemented in .NET☆86Updated 5 years ago
- Reflective Polymorphism☆104Updated 6 years ago
- Advanced Portable Executable File Analyzer And Disassembler 32 & 64 Bit☆99Updated 5 years ago
- All materials from our Black Hat 2018 "Subverting Sysmon" talk☆136Updated 6 years ago
- Lazy Office Analyzer☆119Updated 8 years ago
- ☆26Updated last year
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆85Updated 7 years ago
- Shim database persistence (Fin7 TTP)☆36Updated 4 years ago
- Various scripts for different malware families☆104Updated 3 years ago