axcheron / pycaveLinks
Simple tool to find code caves in Portable Executable (PE) files.
☆23Updated 6 years ago
Alternatives and similar repositories for pycave
Users that are interested in pycave are comparing it to the libraries listed below
Sorting:
- PE File Blessing - To continue or not to continue☆87Updated 5 years ago
- An Xdbg Plugin of the ERC Library.☆26Updated last year
- The following repository contains a modified version of SUNBURST with cracekd hashes, comments and annotations.☆56Updated 4 years ago
- Small visualizator for PE files☆70Updated 2 years ago
- A C++ POC for process injection using NtCreateSectrion, NtMapViewOfSection and RtlCreateUserThread. Credit to @spotheplanet for his notes…☆43Updated 4 years ago
- A powershell parser for https://github.com/ufrisk/MemProcFS☆43Updated 4 years ago
- Metadata hash incorporating the Rich Header for robustness against packing and other malware tricks☆68Updated 4 years ago
- ☆72Updated 2 years ago
- Driver Initial Reconnaissance Tool☆123Updated 5 years ago
- Security Descriptor Definition Language (SDDL) Parser☆38Updated 3 weeks ago
- A DLL that serves OutputDebugString content over a TCP connection☆36Updated 4 years ago
- Leverage AMSI (Antimalware Scan Interface) technology to aid your analysis. This tool saves all buffers (scripts, .NET assemblies, etc) …☆112Updated 4 years ago
- Proxy system calls over an RPC channel☆99Updated 3 years ago
- Mario & Luigi - Tools for sniffing Windows Named Pipes communication☆129Updated 8 years ago
- Royal Road RTF Weaponizer object decoder☆24Updated last year
- How to set up 2 VirtualBox VM to debug kernel driver using windbg☆56Updated 3 years ago
- A tool to create COM class/interface relationships in neo4j☆50Updated 3 years ago
- A repository where I share my injection implemintations☆29Updated 5 years ago
- The hidden mstsc recorder player☆29Updated 5 years ago
- Tools that trigger False Positive AV alerts☆52Updated 9 months ago
- Go Lang Portable Executable Parser☆38Updated 4 years ago
- Dump objects from .NET dumps.☆51Updated 3 years ago
- A simple python implementation of a BITS server.☆105Updated 3 years ago
- Winbindex bot to pull in binaries for specific releases☆48Updated 2 years ago
- Ebfuscator: Abusing system errors for binary obfuscation☆52Updated 5 years ago
- Ghidra plugin for https://analyze.intezer.com☆72Updated 2 years ago
- C++ DLL Bootstrapper for spinning up the CLR for C# Payloads☆44Updated 6 years ago
- Antivirus Emulator Fingerprints☆29Updated 7 years ago
- Dumping credentials through windbg and pykd☆41Updated 2 years ago
- Babel-Shellfish deobfuscates and scans Powershell scripts on real-time right before each line execution.☆43Updated 6 years ago