bridgeythegeek / ndispktscan
NDISPktScan is a plugin for the Volatility Framework. It parses the Ethernet packets stored by ndis.sys in Windows kernel space memory.
☆11Updated 9 years ago
Alternatives and similar repositories for ndispktscan:
Users that are interested in ndispktscan are comparing it to the libraries listed below
- Collection Of Scripts And Utilities For Windows Event Hunting☆18Updated 5 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- pure Python binary analysis framework☆23Updated 6 years ago
- Useful Windows and AD tools☆15Updated 3 years ago
- A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.☆10Updated 5 years ago
- Local enumeration and exploitation framework.☆18Updated 7 years ago
- An offensive bash script which tries to find GENERIC privesc vulnerabilities and issues.☆13Updated 7 years ago
- Plugins for the Viper Framework☆14Updated 5 years ago
- Basic file metadata gathering script☆21Updated last week
- An AV evasion technique using multibyte xor encoding of shellcode☆8Updated 8 years ago
- Metasploit modules, powershell scripts and custom exploit to perform local privilege escalation on windows systems.☆11Updated 8 years ago
- Mobile Application Vulnerability Detection☆12Updated 7 years ago
- Auto Inject Dll , it have three method to inject your custom dll. help you to test inject.☆10Updated 8 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 7 years ago
- Fuzzing Framework☆10Updated 7 years ago
- My manual analysis of malware families☆13Updated 7 years ago
- Generate MAEC XML from Ero Carrera's pefile output☆15Updated 8 years ago
- GSAudit at Symantec, ExeAudit at RIM, RECX Binary Assurance for Windows at Recx etc. - core library now WinBinaryAudit☆24Updated 9 years ago
- Quantum Insert Backdoor POC☆11Updated 7 years ago
- IDA Pro plugin that rename functions on load, based on functionality☆19Updated 7 years ago
- Print the strings of encoded printable characters in files☆12Updated 9 years ago
- Linux and Windows Hardening Points☆12Updated 7 years ago
- API functions for Malware Research☆35Updated 5 years ago
- Toolkit to detected abnormal activities on a Windows machine.☆11Updated 9 years ago
- Carve Windows Prefetch files from arbitrary binary data☆14Updated 7 years ago
- radare2 script to help on COM objects reverse engineering☆11Updated 8 years ago
- IoC's, PCRE's, YARA's etc☆24Updated last month
- Malware analyses and helpful scripts☆29Updated 2 years ago
- PowerShell script to bypass UAC using DCCW☆18Updated 7 years ago
- ☆10Updated 3 months ago