d4rksystem / VBoxCloakLinks
A PowerShell script that attempts to help malware analysts hide their Windows VirtualBox Windows VM's from malware that may be trying to evade analysis. Guaranteed to bring down your pafish ratings by at least a few points ;)
☆394Updated 7 months ago
Alternatives and similar repositories for VBoxCloak
Users that are interested in VBoxCloak are comparing it to the libraries listed below
Sorting:
- A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analys…☆425Updated last year
- A GUI and CLI tool for removing bloat from executables☆441Updated 7 months ago
- Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.☆215Updated this week
- Dynamic unpacker based on PE-sieve☆796Updated 4 months ago
- Somes tools and scripts☆153Updated 4 years ago
- Microsoft Windows DLL Export Browser (Enumerate Exports, COM Methods and Properties) with Advanced Search Features.☆251Updated last year
- Deobfuscate batch scripts obfuscated using string substitution and escape character techniques.☆165Updated 3 years ago
- An automatic unpacker and logger for DotNet Framework targeting files☆267Updated 2 years ago
- Unprotect is a collaborative platform dedicated to uncovering and documenting malware evasion techniques. We invite you to join us in thi…☆203Updated 4 months ago
- A ProcessMonitor visualization application written in rust.☆184Updated 2 years ago
- ☆520Updated 2 years ago
- Repository of Yara Rules☆139Updated 3 weeks ago
- Assortment of hashing algorithms used in malware☆389Updated 3 weeks ago
- Evasions encyclopedia gathers methods used by malware to evade detection when run in virtualized environment. Methods are grouped into ca…☆441Updated last year
- Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs☆803Updated last year
- PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs…☆229Updated last year
- ☆214Updated 2 months ago
- $MFT directory tree reconstruction & FILE record info☆325Updated last year
- This script allows you to create various artifacts on a bare-metal Windows computer in an attempt to trick malwares that looks for VM or …☆288Updated last year
- Memory acquisition for Linux that makes sense.☆219Updated 2 years ago
- The multi-platform memory acquisition tool.☆942Updated 3 months ago
- Living Off The Land Drivers☆1,386Updated this week
- Fileless attack with persistence☆370Updated 7 months ago
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆693Updated 3 months ago
- The Windows Malware Analysis Reversing Core Tools☆97Updated 5 years ago
- Code snips and notes☆140Updated 3 years ago
- Encyclopedia for Executables☆472Updated 4 years ago
- SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also conta…☆478Updated 7 months ago
- ☆380Updated this week
- This repository contains indicators of compromise (IOCs) of our various investigations.☆310Updated 3 months ago