mirror of
https://github.com/pe3zx/my-infosec-awesome.git
synced 2025-01-10 07:09:32 -05:00
Add hegusung/AVSignSeek
This commit is contained in:
parent
a38190dd8a
commit
45c0234d3e
@ -437,6 +437,10 @@ My curated list of awesome links, resources and tools
|
||||
<td><a href="https://github.com/hasherezade/libpeconv/tree/master/run_pe">hasherezade/libpeconv/runpe</a></td>
|
||||
<td>RunPE (aka Process Hollowing) is a well known technique allowing to injecting a new PE into a remote processes, imprersonating this process. The given implementation works for PE 32bit as well as 64bit.</td>
|
||||
</tr>
|
||||
<tr>
|
||||
<td><a href="https://github.com/hegusung/AVSignSeek">hegusung/AVSignSeek</a></td>
|
||||
<td>Tool written in python3 to determine where the AV signature is located in a binary/payload</td>
|
||||
</tr>
|
||||
<tr>
|
||||
<td><a href="https://iris-h.malwageddon.com/">IRIS-H</a></td>
|
||||
<td>IRIS-H is an online digital forensics tool that performs automated static analysis of files stored in a directory-based or strictly structured formats.</td>
|
||||
|
Loading…
Reference in New Issue
Block a user