hasherezade

hasherezade

User data from Github https://github.com/hasherezade

Location:Poland

Home Page:https://hasherezade.net

GitHub:@hasherezade

Twitter:@hasherezade

hasherezade's repositories

pe_to_shellcode

Converts PE into a shellcode

Language:C++License:BSD-2-ClauseStargazers:2648Issues:56Issues:40

exe_to_dll

Converts a EXE into DLL

Language:C++License:BSD-2-ClauseStargazers:1339Issues:33Issues:12

dll_to_exe

Converts a DLL into EXE

process_doppelganging

My implementation of enSilo's Process Doppelganging (PE injection technique)

malware_analysis

Various snippets created during malware analysis

Language:PythonStargazers:456Issues:56Issues:0

IAT_patcher

Persistent IAT hooking application - based on bearparser

Language:C++License:BSD-2-ClauseStargazers:257Issues:21Issues:5

persistence_demos

Demos of various (also non standard) persistence methods used by malware

chimera_pe

ChimeraPE (a PE injector type - alternative to: RunPE, ReflectiveLoader, etc) - a template for manual loading of EXE, loading imports payload-side

dll_injector

A simple commandline injector using classic DLL injection

shellconv

Small tool for disassembling shellcode (using objdump)

Language:PythonStargazers:146Issues:15Issues:0

antianalysis_demos

Set of antianalysis techniques found in malware

password_scrambler

Password scrambler - a deterministic password re-generator (alternative to a password manager)

Language:PythonLicense:BSD-2-ClauseStargazers:129Issues:9Issues:5

pe_unmapper

Small tool to convert beteween the PE alignments (raw and virtual).

ViDi

ViDi Visual Disassembler (experimental)

Language:C++License:BSD-2-ClauseStargazers:76Issues:7Issues:2

paramkit

A small library helping to parse commandline parameters (for C/C++)

Language:C++Stargazers:57Issues:8Issues:0

mal_unpack_py

Python wrappers for mal_unpack

IAT_patcher_samples

Sample libraries to be used with IAT Patcher

Language:JavaScriptStargazers:28Issues:2Issues:0

detours_cmake_tpl

A CMake template for projects using MS Detours

Language:CMakeStargazers:23Issues:5Issues:0

beardisasm

A wrapper for capstone for bearparser

Language:C++Stargazers:13Issues:2Issues:0

libpeconv_and_detours_tpl

A template for projects using both libPeConv and MS Detours

Language:C++Stargazers:13Issues:5Issues:0

drawings

Some of my drawings

SweetDreams

Implementation of Advanced Module Stomping and Heap/Stack Encryption

Language:C++License:BSD-3-ClauseStargazers:9Issues:1Issues:0

bearparser_tests

External tests for bearparser

Language:AssemblyStargazers:7Issues:3Issues:0

pesieve_tests

External tests for PE-sieve

AceLdr

Cobalt Strike UDRL for memory scanner evasion.

Language:CLicense:MITStargazers:3Issues:2Issues:0

paramkit_tpl

A template for a project using ParamKit

Language:C++Stargazers:3Issues:4Issues:0

Ekko

Sleep Obfuscation

Language:CStargazers:1Issues:2Issues:0