15 results found Sort:

434
3.1k
bsd-2-clause
103
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
Created 2017-08-22
1,884 commits to master branch, last one 15 days ago
255
2.0k
bsd-2-clause
66
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
Created 2018-01-11
752 commits to master branch, last one 15 days ago
202
1.7k
mit
47
Educational, CTF-styled labs for individuals interested in Memory Forensics
Created 2019-08-22
28 commits to master branch, last one 3 years ago
76
878
mit
32
AVML - Acquire Volatile Memory for Linux
Created 2019-06-06
443 commits to main branch, last one 19 days ago
68
658
bsd-2-clause
29
Dynamic unpacker based on PE-sieve
Created 2018-07-08
360 commits to master branch, last one 8 months ago
MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR
Created 2021-05-15
142 commits to main branch, last one 23 days ago
65
492
mit
73
SIFT
Created 2014-01-18
31 commits to master branch, last one 9 months ago
35
287
mit
22
Data Visualization Plugin for IDA Pro
Created 2017-01-12
132 commits to master branch, last one about a year ago
13
252
gpl-3.0
7
Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of particular use when investigating a security incident.
This repository has been archived (exclude archived)
Created 2022-09-16
74 commits to main branch, last one 2 months ago
Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR
Created 2022-07-14
32 commits to main branch, last one 8 months ago
A course on "Digital Forensics" designed and offered in the Computer Science Department at Texas Tech University
Created 2018-05-08
501 commits to master branch, last one about a year ago
45
172
gpl-3.0
11
Hyper-V Research is trendy now
Created 2018-06-17
136 commits to master branch, last one 6 months ago
16
131
apache-2.0
8
Rip Raw is a small tool to analyse the memory of compromised Linux systems.
This repository has been archived (exclude archived)
Created 2022-01-27
6 commits to main branch, last one 2 years ago
C# Implementation of Jared Atkinson's Get-InjectedThread.ps1
Created 2020-06-18
24 commits to master branch, last one 3 years ago
A curated list of awesome malware analysis tools and resources
Created 2022-01-07
13 commits to main branch, last one 2 years ago