malice-plugins / windows-defender
Malice Windows Defender AntiVirus Plugin
☆38Updated 2 years ago
Alternatives and similar repositories for windows-defender:
Users that are interested in windows-defender are comparing it to the libraries listed below
- This is a simple tool to dump all the reparse points on an NTFS volume.☆33Updated 4 years ago
- Dynamic PowerShell Analysis Framework Based Upon PowerShell Debugging Functionality☆83Updated 2 years ago
- A collection of shellcode hashes☆17Updated 6 years ago
- Telsy CTI Research Team☆57Updated 4 years ago
- A tool for scanning registery key permissions. Find where non-admins can create symbolic links.☆46Updated 5 years ago
- ☆54Updated 6 years ago
- Malice Office/OLE/RTF Plugin☆13Updated 6 years ago
- InsecurePowerShellHost is a .NET Core host process for InsecurePowerShell, a version of PowerShell Core v6.0.0 with key security features…☆31Updated 7 years ago
- Malice Kaspersky Antivirus Plugin☆17Updated 6 years ago
- ReaCOM has got a lot of tools to use and is related to component object model☆74Updated 5 years ago
- IBM RedCON 2020 - Throwing an AquaWrench into the Kernel☆44Updated 4 years ago
- ☆13Updated 2 years ago
- Sysmon shenanigans☆65Updated 4 years ago
- Community-based integrated malware identification system☆82Updated 2 years ago
- A ready-made template for a project based on libpeconv.☆46Updated last month
- ssdeep cluster analysis for malware files☆30Updated 4 years ago
- Golang parser for OLE files☆31Updated 2 weeks ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 7 years ago
- ☆15Updated 4 years ago
- ☆61Updated 4 years ago
- ☆26Updated 6 years ago
- Shellcode emulator written with Unicorn Framework With Process Dump Emulation Environment☆120Updated 4 years ago
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- ☆47Updated 5 years ago
- Small visualizator for PE files☆67Updated last year
- An IDA plugin to deal with Event Tracing for Windows (ETW)☆52Updated 2 years ago
- Raw socket library/framework for red team events☆34Updated 2 years ago
- A More Comfortable (remote) SHell with full pty support and both reverse / bindport connection mode.☆30Updated 11 years ago
- A small library helping to parse commandline parameters (for C/C++)☆55Updated last year
- ☆41Updated 5 years ago