intezer / MemoryPatchDetectorLinks
Detects code differentials between executables in disk and the corresponding processes/modules in memory
☆115Updated 5 years ago
Alternatives and similar repositories for MemoryPatchDetector
Users that are interested in MemoryPatchDetector are comparing it to the libraries listed below
Sorting:
- Small tool for disassembling shellcode (using objdump)☆148Updated 3 years ago
- Simple shellcode decoder using unicorn-engine☆98Updated 9 years ago
- Bit9 + Carbon Black Threat Intelligence☆81Updated 9 years ago
- hackers-grep is a utility to search for strings in PE executables including imports, exports, and debug symbols☆170Updated 7 years ago
- Malware Analysis Tool using Function Level Fuzzy Hashing☆190Updated 9 years ago
- map file generator for intel x86 binary based on flirt signature☆83Updated 9 years ago
- An environment for comprehensive, automated analysis of web-based exploits, based on Cuckoo sandbox.☆125Updated 9 years ago
- Cryptowall Tooling & Information☆35Updated 9 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆41Updated 8 years ago
- ☆109Updated 7 years ago
- IDATACO IDA Pro Plugin☆47Updated 9 years ago
- ☆46Updated 8 years ago
- ActionScript3 dynamic instrumentation tool☆36Updated 8 years ago
- Your bag of handy codes for malware researchers☆121Updated 5 years ago
- A python implementation of a grep friendly ftrace wrapper☆80Updated 6 years ago
- Scalable Binary Data Extraction in Hadoop☆143Updated 10 years ago
- Rapid deployment of Windows environment (files, registry keys, mutex etc) to facilitate malware analysis☆42Updated 10 years ago
- Bunch of techniques potentially used by malware to detect analysis environments☆159Updated 9 years ago
- ☆75Updated 8 years ago
- Some tutorials and examples for generic unpacking JAVA, .NET and x86/x64 code☆51Updated 9 years ago
- Automatically exported from code.google.com/p/malware-lu☆55Updated 6 years ago
- swffile.py - SWF file parser module in Python☆28Updated 9 years ago
- ripPE - section extractor and profiler for PE file analysis☆32Updated 10 years ago
- Basic command line, text-based, shellcode debugger.☆91Updated 8 years ago
- Scripts for dealing with various ek's☆69Updated 8 years ago
- ☆44Updated 7 years ago
- Cosa Nostra, a FOSS graph based malware clusterization toolkit.☆231Updated last year
- ☆113Updated 8 years ago
- Sublime Malware Research Tool☆66Updated 8 months ago
- flare-dbg is a project meant to aid malware reverse engineers in rapidly developing debugger scripts.☆150Updated 7 years ago