ohjeongwook / ShellCodeEmulatorLinks
Shellcode emulator written with Unicorn Framework With Process Dump Emulation Environment
☆123Updated 5 years ago
Alternatives and similar repositories for ShellCodeEmulator
Users that are interested in ShellCodeEmulator are comparing it to the libraries listed below
Sorting:
- Parsers for custom malware formats ("Funky malware formats")☆96Updated 3 years ago
- Resources for the workshop titled "Repacking the unpacker: Applying Time Travel Debugging to malware analysis", given at HackLu 2019☆42Updated 5 years ago
- Extract OLEv1 objects from RTF files by instrumenting Word☆51Updated 5 years ago
- Flare-On solutions☆36Updated 5 years ago
- A simple API monitor for Windbg☆63Updated 8 years ago
- CAPE monitor DLLs☆41Updated 5 years ago
- The Minimalistic x86/x64 API Hooking Library for Windows☆32Updated 7 years ago
- POC viruses I have created to demo some ideas☆59Updated 5 years ago
- FLARE Kernel Shellcode Loader☆179Updated 6 years ago
- Simple 32/64-bit PEs loader.☆139Updated 6 years ago
- A simple tool to view important DLL Characteristics and change DEP and ASLR☆44Updated 6 years ago
- ☆50Updated 5 years ago
- Scripts for disassembling VBScript p-code in the memory to aid in exploits analysis☆85Updated 3 years ago
- Malware Analysis, Anti-Analysis, and Anti-Anti-Analysis☆45Updated 7 years ago
- Rekall Memory Forensic Framework☆33Updated 6 years ago
- ANBU (Automatic New Binary Unpacker) a tool for me to learn about PIN and about algorithms for generic unpacking.☆92Updated 6 years ago
- ☆115Updated 9 years ago
- Enumerate Windows Defender threat families and dump their names according category☆91Updated 6 years ago
- libemu shim layer and win32 environment for Unicorn Engine☆72Updated 8 years ago
- ☆34Updated 4 years ago
- ☆43Updated 6 years ago
- Reflective SO injection is a library injection technique in which the concept of reflective programming is employed to perform the loadin…☆117Updated 9 years ago
- Load a Windows Kernel Driver☆93Updated 8 years ago
- Tools for instrumenting Windows Defender's mpengine.dll☆37Updated 6 years ago
- A session-0 capable dll injection utility☆76Updated 7 years ago
- Master list of all my vulnerability discoveries. Mostly 3rd party kernel drivers.☆50Updated 5 years ago
- An IDA plugin to deal with Event Tracing for Windows (ETW)☆55Updated 3 years ago
- Public repository for HEVD exploits☆20Updated 7 years ago
- Fileless persistence, attacks and anti-forensic capabilties.☆93Updated 6 years ago
- My conference presentations and publications☆26Updated 3 years ago