nccgroup / mnemosyne
A Generic Windows Memory Scraping Tool
☆70Updated 7 years ago
Alternatives and similar repositories for mnemosyne:
Users that are interested in mnemosyne are comparing it to the libraries listed below
- Open Source Office Malware Generation & Polymorphic Engine for Red Teams and QA testing☆95Updated 7 years ago
- ☆113Updated 7 years ago
- some pocs for antivirus evasion☆130Updated last year
- Another Repo of Malware. Enjoy. <3☆60Updated 6 years ago
- ☆59Updated 5 years ago
- ☆51Updated 6 years ago
- A ready to deploy docker container for a fresh sandbox for on-the-fly malware analysis☆43Updated 7 years ago
- McAfee ePolicy 0wner exploit code☆46Updated 6 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆85Updated 7 years ago
- Some sample code from my Zero Nights 2017 presentation.☆62Updated 7 years ago
- A short and small memory forensics helper.☆52Updated 7 years ago
- ☆84Updated 9 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆55Updated 7 years ago
- Simple DDE object detector☆56Updated 7 years ago
- Talk given at DerbyCon and RuxCon 2016☆22Updated 8 years ago
- Mixing up CVE and MS like a pro☆24Updated 7 years ago
- Environmental (and http) keying for scripting languages☆39Updated 6 years ago
- Make Windows LNK file with python (pylnk)☆66Updated 8 years ago
- POC for IAT Parsing Payloads☆47Updated 8 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆40Updated 6 years ago
- Loads the AutoIt DLL and PowerShell assemblies into memory and executes the specified keystrokes☆61Updated 7 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 10 years ago
- A collection of scripts to initialize a windows VM to run all the malwares!☆106Updated 4 years ago
- Proof of concept VBA code to add to Normal.dot to put restrictions on Word☆41Updated 8 years ago
- All the Power with no Shell☆36Updated 3 years ago
- PoC to tunnel the Meterpreter reverse HTTP shell over RDP Virtual Channels☆66Updated 10 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 6 years ago
- x86-64 Windows shellcode that recreates the Jurassic Park hacking scene (Ah, ah, ah... you didn't' say the magic word!)☆83Updated 4 years ago
- ☆68Updated 7 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆135Updated 7 years ago