feliam / PyPMF
A small python module to manipulate Windows Internals Process Monitor PMF Filter files
☆15Updated 6 years ago
Alternatives and similar repositories for PyPMF:
Users that are interested in PyPMF are comparing it to the libraries listed below
- RunPE dump - I wrote this to have better control over the analysis of malwares. I can stop and analysis malware when it uses some of the …☆10Updated 9 years ago
- Shellcode tracer☆15Updated 8 years ago
- Vulnerable Windows Driver with exploits which were used for demonstration purposes on Hunting and exploiting bugs in kernel drivers prese…☆13Updated 12 years ago
- Tiny research project to understand code injections on Linux based systems☆13Updated 7 years ago
- wow64 syscall filter☆13Updated 10 years ago
- A library for interacting with Windows process memory☆7Updated 6 years ago
- Malware monitor template based on MinHook☆16Updated 9 years ago
- ☆13Updated 7 years ago
- does reflective dll injection☆8Updated 11 years ago
- ☆16Updated 7 years ago
- Yet Another Repetitive Rootkit☆9Updated 11 years ago
- Cross-referencing network communication for detecting Advanced Persistent Threat (APT) malware☆6Updated 9 years ago
- Decrypt the initial dropper of various exploit kits☆10Updated 7 years ago
- This repository is a clne of the new cuckoo monitor where I added some stuff to get the calling address for every hooked API☆8Updated 8 years ago
- Allows you to add breakpoints from IDA (from the graph/text view) to WinDbg easily☆14Updated 6 years ago
- CVE-2014-0816☆24Updated 8 years ago
- Agent installed on node to launch IDA,Bindiff,... and send results to the server ( AutoDiffWeb )☆10Updated 8 years ago
- simple rootkit for computer security class☆14Updated 12 years ago
- ☆12Updated 9 years ago
- dll injection library☆9Updated 10 years ago
- lkm rootkit☆15Updated 10 years ago
- IDA WhatAPIs PlugIn☆7Updated 9 years ago
- Windows hard shutdown shellcode. Don't need administrator rights.☆12Updated 8 years ago
- ☆28Updated 7 years ago
- Malpimp is an advanced API tracing tool and designed to automate the reverse engineering process. In the backend it uses pydbg to hook t…☆8Updated 8 years ago
- Archive from the article CVE-2015-5119 Flash ByteArray UaF: A beginner's walkthrough☆13Updated 9 years ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 6 years ago
- A QEMU based framework for instrumenting x86 programs from Python☆17Updated 4 years ago
- Microsoft Office / COM Object DLL Planting☆15Updated 8 years ago
- Short for Good Ware; it assists Reverse Engineers in the analysis of Windows Malware.☆24Updated 12 years ago