pafish
VM/SAE detector
A tool to detect virtual machines and malware analysis environments by analyzing system behavior similar to malware detection methods.
Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware families do
3k stars
176 watching
465 forks
Language: C
last commit: about 2 years agoLinked from 1 awesome list
analysis-environmentsmalwaremalware-analysismalware-familiesmalware-researchrdtscreverse-engineeringsandboxvirtual-machine
Related projects:
| Repository | Description | Stars |
|---|---|---|
| An Office document designed to test and analyze malware detection systems | 278 | |
| A tool to create templates making VirtualBox VM detection harder | 717 | |
| Automates malware analysis on Windows VMs for research and testing purposes. | 1,036 | |
| Automated tool to detect errors in security monitoring and measure effectiveness of SIEM rules against various behaviors. | 53 | |
| Tool to analyze files during malware analysis and triage by extracting properties and detecting malicious indicators. | 77 | |
| Creates artificial artifacts to evade malware detection and analysis | 252 | |
| A large-scale dataset and codebase for training machine learning models to detect malicious software | 646 | |
| An executable file detector software that identifies packers, protectors, compilers, .NET obfuscators, and other types of malware or unwanted code. | 772 | |
| Analyzes malware by extracting and comparing system call dependencies to classify and detect malicious behavior | 101 | |
| A platform providing automated virtualization environments for security education and vulnerability testing | 188 | |
| An environment for building secure and isolated test automation frameworks for analyzing and testing malware | 816 | |
| Analyzes running processes to detect and dump malicious code | 2,047 | |
| A collection of resources and tools for detecting and preventing malicious activity on Windows systems. | 162 | |
| A real-time detection software for Windows process injections | 291 | |
| Detects and identifies suspicious PDB paths in malware files using Yara rules. | 37 |