olliencc / WindowsPatchDetector
Experimental: Windows .text section compare - disk versus memory
☆14Updated 10 years ago
Alternatives and similar repositories for WindowsPatchDetector
Users that are interested in WindowsPatchDetector are comparing it to the libraries listed below
Sorting:
- Experimental Windows .text section Patch Detector☆21Updated 10 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆15Updated 4 years ago
- API hashing written in C to load APIs indirectly using CRC32 hashing☆14Updated 4 years ago
- Protects and logs suspicious and malicious usage of .NET CSC.exe and Runtime C# Compilation☆25Updated 7 years ago
- ☆22Updated 4 years ago
- ☆13Updated 8 years ago
- Simple shellcode injector.☆14Updated 6 years ago
- ☆10Updated 7 years ago
- My manual analysis of malware families☆13Updated 7 years ago
- Print the strings of encoded printable characters in files☆12Updated 9 years ago
- Will try to put here slides from now on when I give a talk☆24Updated 3 years ago
- Files related to my presentation at SigSegV2 conference in 2019. You can find related papers on my blog☆13Updated 5 years ago
- Auto Inject Dll , it have three method to inject your custom dll. help you to test inject.☆11Updated 8 years ago
- ☆16Updated 7 years ago
- ☆10Updated 7 years ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 7 years ago
- ☆24Updated 3 years ago
- CVE-2020-8103 Link Resolution Privilege Escalation Vulnerability in Bitdefender Antivirus Free☆15Updated 4 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 7 years ago
- Create COM Objects backed by Scripts, not DLLs☆9Updated 7 years ago
- Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.☆23Updated 4 years ago
- Scripts targeting specific families☆13Updated 7 years ago
- Fuzzing Framework☆10Updated 7 years ago
- PCAUSA Rawether for Windows Local Privilege Escalation☆38Updated 8 years ago
- User-mode part of Zerokit platform☆20Updated 6 years ago
- A simple polymorphic engine☆21Updated 4 years ago
- Pack required dlls into a single binary that has no imports and makes direct syscalls on Windows☆28Updated 7 years ago
- C# code to run PIC using CreateThread☆17Updated 6 years ago
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆52Updated 6 years ago
- ☆33Updated 7 years ago