mandiant / win10_auto
☆24Updated 5 years ago
Alternatives and similar repositories for win10_auto:
Users that are interested in win10_auto are comparing it to the libraries listed below
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- SDBbot Unpacker Python 2.7☆9Updated 4 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14Updated 4 years ago
- An IDA plugin to deal with Event Tracing for Windows (ETW)☆52Updated 2 years ago
- Library for Windows XML Event Log (EVTX) data types☆18Updated 5 months ago
- Utilities for working with vivisect☆25Updated 2 weeks ago
- ☆28Updated 4 months ago
- Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.☆23Updated 4 years ago
- Experimental Windows .text section Patch Detector☆21Updated 10 years ago
- Will try to put here slides from now on when I give a talk☆24Updated 3 years ago
- ☆21Updated 4 years ago
- Extract data of TTD trace file to a minidump☆28Updated last year
- Windows x64 Process Scanner to detect application compatability shims☆37Updated 6 years ago
- ☆22Updated 4 years ago
- ☆15Updated 4 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago
- Zero Wine Tryouts: An open source malware analysis tool☆16Updated 8 years ago
- An opensource API hooking framework☆22Updated 5 years ago
- Experimental: Windows .text section compare - disk versus memory☆14Updated 10 years ago
- ☆36Updated 5 years ago
- Linux-KVM with rVMI extensions☆22Updated 7 years ago
- CVE-2020-8103 Link Resolution Privilege Escalation Vulnerability in Bitdefender Antivirus Free☆15Updated 4 years ago
- Currently proof-of-concept☆16Updated 3 years ago
- My conference presentations and publications☆26Updated 3 years ago
- Universal Malware Sample Encryption☆10Updated last year
- My manual analysis of malware families☆13Updated 7 years ago
- ☆13Updated 4 years ago
- Auto Inject Dll , it have three method to inject your custom dll. help you to test inject.☆10Updated 8 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 3 years ago
- findLoop - find possible encryption/decryption or compression/decompression code☆26Updated 5 years ago