Pafish Macro is a Macro enabled Office Document to detect malware analysis systems and sandboxes. It uses evasion & detection techniques implemented by malicious documents.
☆297Jun 27, 2017Updated 9 years ago
Alternatives and similar repositories for pafishmacro
Users that are interested in pafishmacro are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- VBA Obfuscation Tools combined with an MS office document generator☆555Oct 15, 2017Updated 8 years ago
- Malicious Macro Generator☆831Apr 17, 2019Updated 7 years ago
- A VBA parser and emulation engine to analyze malicious macros.☆1,122Jul 10, 2024Updated 2 years ago
- WePWNise generates architecture independent VBA code to be used in Office documents or templates and automates bypassing application cont…☆350Aug 27, 2018Updated 7 years ago
- A PowerShell based utility for the creation of malicious Office macro documents.☆1,108Nov 3, 2017Updated 8 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that…☆3,943Jun 21, 2024Updated 2 years ago
- Sandbox for semi-automatic Javascript malware analysis, deobfuscation and payload extraction. Written for Node.js☆477Jun 16, 2023Updated 3 years ago
- Collection of scripts to aid in delivering payloads via Office Macros. Most are python. See http://khr0x40sh.wordpress.com for details.☆409Jul 14, 2016Updated 10 years ago
- A tool for detecting VBA stomping.☆102Aug 4, 2022Updated 3 years ago
- POC Highlighting Obfuscation Techniques used by FIN threat actors based on cmd.exe's replace functionality and cmd.exe/powershell.exe's s…☆108Jul 2, 2017Updated 9 years ago
- This repo is for WMIOps, a powershell script which uses WMI for various purposes across a network.☆386Jun 25, 2024Updated 2 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆41Sep 12, 2016Updated 9 years ago
- An SSL Enabled Basic Auth Credential Harvester with a Word Document Template URL Injector☆1,020Sep 11, 2017Updated 8 years ago
- A tool to create a JScript file which loads a .NET v2 assembly from memory.☆1,329Jan 18, 2021Updated 5 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Command line tool for scanning streams within office documents plus xor db attack☆127Sep 23, 2023Updated 2 years ago
- HTA encryption tool for RedTeams☆1,428Nov 9, 2022Updated 3 years ago
- DLL Generator for side loading attack☆176Feb 5, 2019Updated 7 years ago
- Lazy Office Analyzer☆122Feb 15, 2017Updated 9 years ago
- A cross-platform assistant for creating malicious MS Office documents. Can hide VBA macros, stomp VBA code (via P-Code) and confuse macro…☆2,250Dec 27, 2023Updated 2 years ago
- Framework for Making Environmental Keyed Payloads (NO LONGER SUPPORTED)☆762Jan 28, 2019Updated 7 years ago
- Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.☆7,067Jul 1, 2026Updated 3 weeks ago
- Sandbox evasion modules written in PowerShell, Python, Go, Ruby, C, C#, Perl, and Rust.☆933Jun 1, 2021Updated 5 years ago
- C# Targeted Attack Reconnissance Tools☆120Jan 11, 2021Updated 5 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Use ExpiredDomains.net and BlueCoat to find useful domains for red team.☆185Jun 10, 2022Updated 4 years ago
- A JavaScript and VBScript Based Empire Launcher, which runs within their own embedded PowerShell Host.☆321Jun 5, 2017Updated 9 years ago
- The project is called Great SCT (Great Scott). Great SCT is an open source project to generate application white list bypasses. This tool…☆1,125Feb 10, 2021Updated 5 years ago
- This is a PowerShell based tool that is designed to act like a RAT. Its interface is that of a shell where any command that is supported …☆861Jun 25, 2024Updated 2 years ago
- Run PowerShell command without invoking powershell.exe☆1,554Apr 9, 2026Updated 3 months ago
- A command line tool for creating malicious outlook rules☆165Dec 11, 2018Updated 7 years ago
- Powershell Persistence Locator☆67Sep 11, 2016Updated 9 years ago
- Frida.re based RunPE (and MapViewOfSection) extraction tool☆114Mar 2, 2017Updated 9 years ago
- Open Source Office Malware Generation & Polymorphic Engine for Red Teams and QA testing☆95Apr 5, 2017Updated 9 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- VBA Dynamic Hook dynamically analyzes VBA macros inside Office documents by hooking function calls☆153Mar 17, 2016Updated 10 years ago
- PSAmsi is a tool for auditing and defeating AMSI signatures.☆399Apr 22, 2018Updated 8 years ago
- morphHTA - Morphing Cobalt Strike's evil.HTA☆530Apr 14, 2023Updated 3 years ago
- (extensible) Data Exfiltration Toolkit (DET)☆822Nov 3, 2017Updated 8 years ago
- CACTUSTORCH: Payload Generation for Adversary Simulations☆1,019Jul 3, 2018Updated 8 years ago
- Payload Generation Framework☆1,989Aug 21, 2024Updated last year
- Vba2Graph - Generate call graphs from VBA code, for easier analysis of malicious documents.☆283Dec 13, 2021Updated 4 years ago