feliam / PyPMF
A small python module to manipulate Windows Internals Process Monitor PMF Filter files
☆15Updated 6 years ago
Related projects ⓘ
Alternatives and complementary repositories for PyPMF
- RunPE dump - I wrote this to have better control over the analysis of malwares. I can stop and analysis malware when it uses some of the …☆10Updated 9 years ago
- Tiny research project to understand code injections on Linux based systems☆13Updated 7 years ago
- Vulnerable Windows Driver with exploits which were used for demonstration purposes on Hunting and exploiting bugs in kernel drivers prese…☆13Updated 11 years ago
- A library for interacting with Windows process memory☆7Updated 6 years ago
- A simple Ubuntu / Redhat / CentOS and Debian Audit Script☆9Updated 4 years ago
- Short for Good Ware; it assists Reverse Engineers in the analysis of Windows Malware.☆24Updated 12 years ago
- ☆16Updated 7 years ago
- A QEMU based framework for instrumenting x86 programs from Python☆17Updated 4 years ago
- ☆13Updated 7 years ago
- Cross-referencing network communication for detecting Advanced Persistent Threat (APT) malware☆6Updated 9 years ago
- Shellcode tracer☆15Updated 8 years ago
- simple rootkit for computer security class☆13Updated 11 years ago
- wow64 syscall filter☆13Updated 9 years ago
- just a basic rootkit for learning how to playing sys_call_table☆13Updated 8 years ago
- does reflective dll injection☆8Updated 10 years ago
- ☆9Updated 7 years ago
- Slides & Video Demos of My Talk Titled Browser Exploits? Grab ’em by the Collar! @ Brucon0x09☆0Updated 6 years ago
- Agent installed on node to launch IDA,Bindiff,... and send results to the server ( AutoDiffWeb )☆10Updated 8 years ago
- 🔴 A simple kernel-level rootkit☆19Updated 8 years ago
- libemu – x86 Shellcode Emulation☆9Updated 8 years ago
- This repository is a clne of the new cuckoo monitor where I added some stuff to get the calling address for every hooked API☆8Updated 8 years ago