ryancor / CryptoWall_AnalysisLinks
CryptoWall 3.0 Ransomware Reversing Documentation & Scripts
☆17Updated 4 years ago
Alternatives and similar repositories for CryptoWall_Analysis
Users that are interested in CryptoWall_Analysis are comparing it to the libraries listed below
Sorting:
- ☆23Updated 4 years ago
- A simple injector that uses LoadLibraryA☆18Updated 5 years ago
- Liberating dem proprietary APT implants☆20Updated 5 years ago
- Notes about reverse engineering the Petya2017 ransomware☆18Updated 7 years ago
- A repository where I share my injection implemintations☆29Updated 4 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago
- Dumping credentials through windbg and pykd☆41Updated last year
- Ransoblin (Ransomware Bokoblin)☆18Updated 4 years ago
- A C++ POC for process injection using NtCreateSectrion, NtMapViewOfSection and RtlCreateUserThread. Credit to @spotheplanet for his notes…☆43Updated 4 years ago
- Parser for a custom executable format from Hidden Bee malware (first stage)☆43Updated 9 months ago
- ☆11Updated 5 years ago
- Files related to my presentation at SigSegV2 conference in 2019. You can find related papers on my blog☆13Updated 5 years ago
- BlueKeep powershell scanner (based on c# code)☆39Updated 5 years ago
- ☆43Updated 6 years ago
- (Sim)ulate (Ba)zar Loader☆29Updated 4 years ago
- Adapt practically persistence steadiness strategies working at Windows 10 utilized by sponsored nation-state threat actors, as Turla, Pro…☆22Updated 4 years ago
- ☆17Updated 4 years ago
- Sp00fer blog post -☆26Updated 2 years ago
- Malware campaigns and APTs research by BlackArrow☆18Updated 5 years ago
- Crystal Anti-Exploit Protection 2012☆37Updated 5 years ago
- Specialized tool to dump Position Independent Code.☆22Updated 4 years ago
- Windows GPU rootkit PoC by Team Jellyfish☆35Updated 10 years ago
- ☆13Updated 8 years ago
- Run Any Native PE file as a memory ONLY Payload , most likely as a shellcode using hta attack vector which interacts with Powershell.☆27Updated 8 years ago
- Repository for LNK stuff☆30Updated 2 years ago
- x64 Windows package of the shellcode2exe tool☆14Updated 4 years ago
- Utility to inject honey tokens into lsass.☆28Updated 8 years ago
- A Linux RAT in C☆34Updated 6 years ago
- PoC code from blog☆16Updated 5 years ago
- This tool parses NTDLL.DLL, extracts all the syscall numbers and helps in making direct syscalls, in order to help evasion.☆15Updated 3 years ago