Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
-
Updated
Mar 30, 2025 - C
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
Rootkit spotter - experimental Linux rootkit finder LKM
A tool to cluster similar executables (PEs, DEXs, and etc), extract common signature, and generate Yara patterns for malware detection.
Rootkit breaker - experimental Linux anti-rootkit tool based on kprobes
A toolchain for ELF executables and malware containing a standalone loader, file stripper, data obfuscator and a packer
Anti-Ransomware Detection Tool
THAMARA - Threat Hunting with AMSI and YARA
This is a virus removal (protection) tool for a virus commonly known as "Dulla virus" and several weeks later by A/V vendors Win32.Agent.cb. Motivation of the work: even though this PE infector is very dangerous and was stealthily spreading fast, the major A/V companies failed to respond to this threat. Hence, needed to make own removal and prot…
Security Aware Linux Scheduler
Experimental program that detects files & directories hidden by Linux trojan/rootkits
Implementation of a folder integrity and malware detection utility that scans directories, detects changes via SHA-256 snapshots, and isolates suspicious files based on heuristic analysis. Developed as an academic project at Politehnica University of Timișoara.
Simple low-level Android antivirus
Testing samples for malware analysis testing
Repository for malware development, analysis and prevention. For research and educational purposes only.
Projects from the 'Security of Systems and Services' course at the Technical University of Crete, covering cryptography, malware detection, logging, and web application security.
Simple Android daemon for detecting malware in runtime
Add a description, image, and links to the malware-detection topic page so that developers can more easily learn about it.
To associate your repository with the malware-detection topic, visit your repo's landing page and select "manage topics."