Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
updated at Nov. 17, 2024, 10:57 a.m.
Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide
updated at Nov. 17, 2024, 6:28 a.m.
Linker/Compiler/Tool detector for Windows, Linux and MacOS.
updated at Nov. 17, 2024, 12:07 a.m.
This is the development tree. Production downloads are at:
updated at Nov. 17, 2024, 12:02 a.m.
C++ application that uses memory and code hooks to detect packers
updated at Oct. 17, 2024, 8:23 a.m.
BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)
updated at Oct. 2, 2024, 9:09 a.m.
Checks with NSRL RDS servers looking for for hash matches
updated at Sept. 6, 2024, 1:53 p.m.