hidd3ncod3s / runpedmp
RunPE dump - I wrote this to have better control over the analysis of malwares. I can stop and analysis malware when it uses some of the API's i hook and to dump the memory while it is using RunPE/PH techniques.
☆10Updated 9 years ago
Alternatives and similar repositories for runpedmp:
Users that are interested in runpedmp are comparing it to the libraries listed below
- does reflective dll injection☆8Updated 11 years ago
- Windows registry files interactive viewer☆9Updated 7 years ago
- ☆10Updated 10 years ago
- wow64 syscall filter☆13Updated 10 years ago
- ☆12Updated 9 years ago
- Vulnerable Windows Driver with exploits which were used for demonstration purposes on Hunting and exploiting bugs in kernel drivers prese…☆13Updated 12 years ago
- Common Malware Techniques☆13Updated last year
- Framework complet d'analyse de malware☆12Updated 8 years ago
- Yet Another Repetitive Rootkit☆9Updated 11 years ago
- Cross-referencing network communication for detecting Advanced Persistent Threat (APT) malware☆6Updated 9 years ago
- Tunnel IP through DNS for fun and profit (aka stealing hotel wifi)☆7Updated 6 months ago
- Agent installed on node to launch IDA,Bindiff,... and send results to the server ( AutoDiffWeb )☆10Updated 8 years ago
- Post-explotation Hacks☆14Updated 6 years ago
- Capture Webcam Reflective Dll☆8Updated 8 years ago
- it's a simple LKM rootkit.☆12Updated 8 years ago
- A library for interacting with Windows process memory☆7Updated 6 years ago
- Malware analyses and helpful scripts☆29Updated 2 years ago
- Allows you to add breakpoints from IDA (from the graph/text view) to WinDbg easily☆14Updated 6 years ago
- ☆16Updated 7 years ago
- ☆10Updated 6 years ago
- Tiny research project to understand code injections on Linux based systems☆13Updated 7 years ago
- Shellcode tracer☆15Updated 8 years ago
- Analysis and Modification Tool for Executables☆16Updated 5 years ago
- ☆13Updated 7 years ago
- ☆10Updated 7 years ago
- Remote execution tool☆14Updated 11 years ago
- IDA WhatAPIs PlugIn☆7Updated 9 years ago
- Legal access: The driver and console app to demonstrate the basic memory access in kernel mode☆9Updated 7 years ago
- This repository is a clne of the new cuckoo monitor where I added some stuff to get the calling address for every hooked API☆8Updated 8 years ago
- Shellcode injection using debugging APIs☆19Updated 11 years ago