nccgroup / memaddressanalysis
Research project related to memory address analysis
☆14Updated 10 years ago
Alternatives and similar repositories for memaddressanalysis
Users that are interested in memaddressanalysis are comparing it to the libraries listed below
Sorting:
- Generate MAEC XML from Ero Carrera's pefile output☆15Updated 8 years ago
- Static analysis tools for x86 assembly☆13Updated 8 years ago
- does reflective dll injection☆8Updated 11 years ago
- A library for interacting with Windows process memory☆7Updated 6 years ago
- it's a simple LKM rootkit.☆12Updated 8 years ago
- Services and Drivers control application☆19Updated 7 years ago
- This repository is a clne of the new cuckoo monitor where I added some stuff to get the calling address for every hooked API☆8Updated 9 years ago
- RunPE dump - I wrote this to have better control over the analysis of malwares. I can stop and analysis malware when it uses some of the …☆10Updated 9 years ago
- Vulnerable Windows Driver with exploits which were used for demonstration purposes on Hunting and exploiting bugs in kernel drivers prese…☆13Updated 12 years ago
- wow64 syscall filter☆13Updated 10 years ago
- A tool evaluates security configurations of a given PE based on SDL without source code☆14Updated 10 years ago
- Cross-referencing network communication for detecting Advanced Persistent Threat (APT) malware☆6Updated 9 years ago
- simple rootkit for computer security class☆14Updated 12 years ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 7 years ago
- Prototype for an in memory fuzzer☆13Updated 7 years ago
- ☆17Updated 6 years ago
- Windows Enumeration Tool☆10Updated 4 years ago
- Library for Windows XML Event Log (EVTX) data types☆18Updated 7 months ago
- Auto Inject Dll , it have three method to inject your custom dll. help you to test inject.☆11Updated 8 years ago
- IDA WhatAPIs PlugIn☆7Updated 9 years ago
- reverse engineering, visual binary analysis☆24Updated 8 years ago
- ☆10Updated 10 years ago
- Framework complet d'analyse de malware☆12Updated 9 years ago
- 🐧 A simple kernel-level rootkit☆20Updated 9 years ago
- How to write inline c# in xaml☆8Updated 11 years ago
- Shellcode injection using debugging APIs☆19Updated 11 years ago
- This is a fuzzer for Windows SEH buffer overflow.☆15Updated 7 years ago
- A small python module to manipulate Windows Internals Process Monitor PMF Filter files☆15Updated 6 years ago
- Code Injector Using Code Caves☆14Updated 9 years ago
- Kernel Shellcode to add all privileges in token☆13Updated 8 years ago