intezer / MemoryPatchDetector
Detects code differentials between executables in disk and the corresponding processes/modules in memory
☆115Updated 4 years ago
Alternatives and similar repositories for MemoryPatchDetector:
Users that are interested in MemoryPatchDetector are comparing it to the libraries listed below
- Simple shellcode decoder using unicorn-engine☆99Updated 9 years ago
- Bit9 + Carbon Black Threat Intelligence☆82Updated 9 years ago
- An environment for comprehensive, automated analysis of web-based exploits, based on Cuckoo sandbox.☆125Updated 9 years ago
- Malware Analysis Tool using Function Level Fuzzy Hashing☆191Updated 9 years ago
- IDATACO IDA Pro Plugin☆47Updated 8 years ago
- Scripts for dealing with various ek's☆69Updated 8 years ago
- hackers-grep is a utility to search for strings in PE executables including imports, exports, and debug symbols☆170Updated 6 years ago
- map file generator for intel x86 binary based on flirt signature☆84Updated 8 years ago
- Basic command line, text-based, shellcode debugger.☆92Updated 7 years ago
- ☆109Updated 7 years ago
- Small tool for disassembling shellcode (using objdump)☆147Updated 2 years ago
- Some tutorials and examples for generic unpacking JAVA, .NET and x86/x64 code☆50Updated 8 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆42Updated 8 years ago
- Cryptowall Tooling & Information☆35Updated 9 years ago
- A python implementation of a grep friendly ftrace wrapper☆80Updated 5 years ago
- ActionScript3 dynamic instrumentation tool☆36Updated 8 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated last year
- Proof-of-concept exploit code for CVE-2016-5696☆73Updated 8 years ago
- zer0m0n driver for cuckoo sandbox☆87Updated 8 years ago
- Rapid deployment of Windows environment (files, registry keys, mutex etc) to facilitate malware analysis☆42Updated 10 years ago
- Automated memory forensics analysis☆33Updated 5 years ago
- ☆112Updated 7 years ago
- Manage VT Alerts☆62Updated 8 years ago
- A clone (of the basic core) of AFL fuzzer☆74Updated 9 years ago
- A dumb set of scripts for building a cuckoo rig☆61Updated 8 years ago
- Use computer vision to determine if an IDN can be interpreted as something it's not☆62Updated 7 years ago
- Malware Fragmentation Tool its a tool that simply fragment the PE file and it can disassemble the PE file, etc this tool very useful for…☆36Updated 9 years ago
- Sublime Malware Research Tool☆65Updated 5 months ago
- Parse Yara rules and operate over them more easily.☆52Updated 6 years ago
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆44Updated 8 years ago