f6-dfir / RansomwareLinks
☆33Updated this week
Alternatives and similar repositories for Ransomware
Users that are interested in Ransomware are comparing it to the libraries listed below
Sorting:
- The best powershell obfuscator ever made☆119Updated 6 months ago
- Go ransomware leveraging ChaCha20 and ECIES encryption with a web-based control panel.☆46Updated 9 months ago
- Analyse MSI files for vulnerabilities☆141Updated last year
- a small wiper malware programmed in c#☆59Updated 3 years ago
- C++ Staged Shellcode Loader with Evasion capabilities.☆97Updated last year
- ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.☆130Updated 9 months ago
- Keygen for Positive Technologies Network Attack Detector☆32Updated 2 years ago
- Shellcode encryptor using a substitution cipher with a randomly generated key.☆142Updated last year
- A simple commandline application to automatically decrypt strings from Obfuscator protected binaries☆47Updated last year
- some leaked src code for known and unknown malwares☆23Updated 5 months ago
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆39Updated 11 months ago
- Keklick - C2 Hunting, Reporting and Visualization Tool☆63Updated 6 months ago
- PowerShell script to generate ShellCode in various formats☆46Updated last year
- A stealthy, assembly-based tool for secure function address resolution, offering a robust alternative to GetProcAddress.☆72Updated last year
- Lena's scripts/code/resources for malware analysis☆26Updated last year
- RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debugging☆203Updated 10 months ago
- Advanced dynamic malware analysis tool.☆82Updated 2 years ago
- فایل ها و فیلم های ورکشاپ ردتیم 2024 با هانت لرن☆32Updated last year
- Chiron Unpacker, developed by the Malwation MTR Team, is an Unpacker for Packers using the Assembly.Load function.☆22Updated last year
- A simple go Proof of Concept to start a new shell as TrustedInstaller☆63Updated 2 years ago
- Decrypting yandex browser passwords☆27Updated 9 months ago
- Payload encoding utility to effectively lower payload entropy.☆123Updated 9 months ago
- Situational Awareness script to identify how and where to run implants☆67Updated last year
- ☆27Updated 2 years ago
- Hunt for C2 servers and phishing web sites using VirusTotal API , you can modify code to kill the malicious process☆75Updated last year
- Nim process hollowing loader☆62Updated 6 months ago
- Yandex browser passwords and credit-cards decryption algorithm☆22Updated 9 months ago
- PoC showcasing new DarkGate Install Script retrieval technique via DNS TXT Record☆44Updated 2 years ago
- Configuration Extractors for Malware☆122Updated 9 months ago
- Stuxnet extracted binaries by reversing & Stuxnet Rootkit Analysis☆83Updated last year