ZAYOTEM / malware-analysis-feed
[MAF - Malware Analysis Feed] This repository aim to collect useful scripts and rules for the detection of malware families analyzed by ZAYOTEM.
☆20Updated 8 months ago
Related projects ⓘ
Alternatives and complementary repositories for malware-analysis-feed
- SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also conta…☆343Updated last week
- This repository contains indicators of compromise (IOCs) of our various investigations.☆207Updated 5 months ago
- A tutorial on how to write a packer for Windows!☆245Updated 10 months ago
- ☆123Updated last year
- Repository to publish your evasion techniques and contribute to the project☆134Updated 3 weeks ago
- Repository of Yara Rules☆88Updated 3 weeks ago
- ☆307Updated this week
- Cybersecurity research results. Simple C/C++ and Python implementations☆176Updated 2 weeks ago
- A ProcessMonitor visualization application written in rust.☆176Updated last year
- Code snips and notes☆131Updated 2 years ago
- Evasion by machine code de-optimization.☆329Updated 3 months ago
- Statically unpacking common android banker malware.☆133Updated last month
- Malware Samples that could be used for teaching students about malware analysis.☆47Updated 7 months ago
- Tools for analyzing EDR agents☆208Updated 5 months ago
- Important notes and topics on my journey towards mastering Windows Internals☆339Updated 6 months ago
- A small program written in C that is designed to load 32/64-bit shellcode and allow for execution or debugging. Can also output PE files …☆124Updated 3 months ago
- ☆104Updated this week
- Collection of resources that are made by the Malware Research community☆220Updated last year
- Research notes☆115Updated last month
- Centralized resource for listing and organizing known injection techniques and POCs☆218Updated last week
- Evasion Escaper is a project aimed at evading the checks that malicious software performs to detect if it's running in a virtual environm…☆99Updated last year
- Experimental Windows x64 Kernel Rootkit with anti-rootkit evasion features.☆486Updated 7 months ago
- All binaries file of the PracticalMalwareAnalysis-Labs copied from internet☆32Updated 7 years ago
- My collection of malware dev links☆242Updated 2 months ago
- ☆130Updated last year
- Python tool to check rootkits in Windows kernel☆165Updated 3 months ago
- Assortment of hashing algorithms used in malware☆330Updated 4 months ago
- An automatic unpacker and logger for DotNet Framework targeting files☆248Updated last year
- PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs…☆160Updated 6 months ago