serializingme / emofishesLinks
Emofishes is a collection of proof-of-concepts that help improve, bypass or detect virtualized execution environments (focusing on the ones setup for malware analysis).
☆15Updated 3 years ago
Alternatives and similar repositories for emofishes
Users that are interested in emofishes are comparing it to the libraries listed below
Sorting:
- POC for IAT Parsing Payloads☆48Updated 9 years ago
- This script is used for extracting DDE in docx and xlsx☆12Updated 8 years ago
- Making shellcode UD - https://osandamalith.com☆25Updated 9 years ago
- Python based module to find common vulnerabilities which lead to Windows privilege escalation☆30Updated 9 years ago
- A simple reflective dll example☆19Updated 9 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Environmental (and http) keying for scripting languages☆39Updated 7 years ago
- Mixing up CVE and MS like a pro☆25Updated 8 years ago
- PowerShell Module Bindings for Capstone/Keystone☆25Updated 9 years ago
- "Polymorphic" shellcode generator (x86)☆25Updated 11 years ago
- List of scripts used for malware analysis☆15Updated 10 years ago
- A framework for creating modular bots/backdoors☆21Updated 10 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆58Updated 8 years ago
- Talk given at DerbyCon and RuxCon 2016☆23Updated 9 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆88Updated 8 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Updated 9 years ago
- Post Exploitation Linux Toolkit☆33Updated 9 years ago
- ☆52Updated 10 years ago
- Nano meterpreter shell based on TinyMet☆28Updated 9 years ago
- Tools to enumerate Windows Firewall Hook Drivers on Windows 2000, XP and 2003☆21Updated 11 years ago
- Mimikatz HashClash☆12Updated 10 years ago
- An offensive Powershell console☆30Updated 10 years ago
- Python script to inject and run shellcodes through TLS callbacks☆49Updated 10 years ago
- Various snippets created during malware analysis☆22Updated 7 years ago
- Fileless SQL Server CLR-based Custom Stored Procedure Command Execution☆35Updated 8 years ago
- Protects and logs suspicious and malicious usage of .NET CSC.exe and Runtime C# Compilation☆25Updated 7 years ago
- ☆18Updated 8 years ago
- Mobile Application Vulnerability Detection☆12Updated 8 years ago
- ☆65Updated 9 years ago
- A Generic Windows Memory Scraping Tool☆71Updated 8 years ago