halsten / Duqu-detectors
Scripts for detecting Duqu drivers and other elements
☆20Updated 13 years ago
Related projects ⓘ
Alternatives and complementary repositories for Duqu-detectors
- The educational Animus malware☆17Updated 5 years ago
- Collection of IDA Pro plugins I wrote over the years☆23Updated 14 years ago
- python inspect rootkit tool☆34Updated 11 years ago
- Exporters for OllyDbg and ImmunityDbg for use with zynamics BinNavi <= 3.0☆17Updated 12 years ago
- ☆26Updated 10 years ago
- IDA Pomidor is a plugin for Hex-Ray's IDA Pro disassembler that will help you retain concentration and productivity during long reversing…☆35Updated 10 years ago
- Anti-technique Codes, Detection of Anti-technique codes☆37Updated 11 years ago
- File Dissect is a cross-platform framework and UI for analyzing various file formats. It is based on wxWidgets since it provides a native…☆21Updated 2 months ago
- A collection of useful radare2 scripts!☆28Updated 6 years ago
- Sentinel is a command line tool able to protect Windows 32 bit programs against exploits targeted by attackers or viruses. It can protect…☆69Updated 10 years ago
- Imports MSDN documentation into IDA Pro☆51Updated 12 years ago
- ☆32Updated 5 months ago
- repository with additional materials and source code☆29Updated 7 years ago
- A tool for enumerating the effective privileges of processes on an Android device.☆51Updated 10 years ago
- A few IDAPython scripts to generate class hierarchy diagrams from IDBs☆34Updated 12 years ago
- Malware.lu configuration extractor☆24Updated 10 years ago
- LPE exploits for Secret Net and Secret Net Studio☆51Updated 8 years ago
- Some yara rules and tools☆16Updated 10 years ago
- please use https://github.com/fireeye/vivisect instead☆16Updated 3 months ago
- ☆15Updated 4 years ago
- Misc Python tools or PoCs. Mainly focused in helping RE, fuzzing☆20Updated 12 years ago
- exploit dev. stuff☆21Updated 12 years ago
- Malpimp is an advanced API tracing tool and designed to automate the reverse engineering process. In the backend it uses pydbg to hook t…☆8Updated 8 years ago
- POC for IAT Parsing Payloads☆47Updated 7 years ago
- A multi-codec media fuzzing tool.☆42Updated 12 years ago
- A pure-python win32 debugger interface.☆28Updated 8 years ago
- pykd script to dynamically find vtables on heap (windows x86/x64)☆24Updated 10 years ago