Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
Malware
Malware can take various forms, including viruses, worms, Trojans, ransomware, spyware, and more. Its primary goal is to compromise the integrity, confidentiality, or availability of information, often for financial gain, espionage, or other malicious purposes.
- GitHub: https://github.com/topics/malware
- Wikipedia: https://en.wikipedia.org/wiki/Malware
- Related Topics: virus, security, malware-analysis, cyber-attack, cyber-security, system-tracking, system-monitoring,
- Aliases: computer-malware,
- Last updated: 2025-01-29 00:17:43 UTC
- JSON Representation
https://github.com/gdatasoftwareag/typerefhasher
CLI tool to compute the TypeRefHash for .NET binaries.
dotnet imphash malware reverse-engineering trh typerefhash
Last synced: 11 Nov 2024
https://github.com/jmousqueton/badware
Ransomware for demonstration
csirt demo malware powershell ransomware redteam
Last synced: 10 Nov 2024
https://github.com/ice-wzl/bash-malware-dropper
Malware written in bash to serve as an initial dropper script that will provide a strong foothold on the target device via reverse shells and persistence techniques, can be set to run via user interaction or coupled with a bot.
bash bash-script bot-net centos cowrie cowrie-honeypot cowrie-ssh debian linux malware malware-dropper persistence red-hat red-team reverse-shell reverse-shells ssh systemd
Last synced: 15 Dec 2024
https://github.com/ngn13/venom
Free and open source information stealer written in Go
golang-malware info-stealer information-stealer malware malware-development stealer
Last synced: 20 Nov 2024
https://github.com/slowy07/malwarecode
a bunch of malware in all platform, some maybe not work, this code for some study case or for knowledge. for information about malware you can search on wikipedia
Last synced: 13 Oct 2024
https://github.com/alsch092/modifyexports
Research of modifying exported function names at runtime (C/C++, Windows)
injection malware malware-analysis malware-evasion mitre-attack reverse-engineering windows-programming
Last synced: 09 Nov 2024
https://github.com/drew-alleman/write-ups
Various Write Ups from OverTheWire, TryHackMe, HackTheBox, CrackMes.one and more!
ctf ctf-writeups ctfs hacking malware penetration-testing python reverse-engineering web write-ups writeups
Last synced: 22 Jan 2025
https://github.com/edoardottt/defango
URL / IP / Email defanging with Golang. Make IoC harmless.
defang defanging defense defensive-security email-security go golang golang-module golang-package indicators-of-compromise ioc malware malware-analysis malware-protection malware-research phishing phishing-protection security web-security websecurity
Last synced: 28 Oct 2024
https://github.com/melardev/xeytanj-async-rat
WORK IN PROGRESS. RAT written in Java
backdoor desktop java malware networking rat remote-administration-tool sockets trojan
Last synced: 26 Nov 2024
https://github.com/7axel/spytrog
tool to create a spy virus for windows os
axel email hacking-tool malware python spytrog spyware virus windows
Last synced: 10 Nov 2024
https://github.com/boloto1979/basic-types-of-malware
This repository provides information and tools related to different types of malware. Each type is organized into separate folders, featuring a specific tool and a detailed explanation of how it works.
atm linux-shell malware reverse-shell shellcode sockets unix-shell windows
Last synced: 06 Dec 2024
https://github.com/sergilopez/flanders-trojan
Trojan written in C++ for Windows
c-plus-plus c2-server command-and-control ddos debugger-detection dll-injection keylogger malware persistence privilege-escalation ransomware screen-capture trojan uac-bypass vm-detection windows
Last synced: 08 Nov 2024
https://github.com/xchwarze/rats-library
RATs library 2003 to present
malware malware-research malware-samples
Last synced: 28 Jan 2025
https://github.com/7axel/keylogger
windows keylogger virus builder
email keyboard keylogger linux malware python virus windows windows-virus
Last synced: 10 Nov 2024
https://github.com/swagkarna/metainject
Inject Metasploit Shell Code in Legitimate Process
bypass cybersecurity fud hack-window inject-exe malware metasploit metasploit-shellcode msf pentest pentest-tool pentesting windows-hack
Last synced: 20 Jan 2025
https://github.com/loneicewolf/exec_lkm
A LKM (Loadable Kernel Module) to execute a command as root; I include a example of using netcat and a compiled(with source and steps on how to compile) reverse shell provided in C.
bootkit linux lkm lkm-rootkit loneicewolf malware rootkit rootkits venomrootkit
Last synced: 06 Nov 2024
https://github.com/manulmap/malstring
Using c++23 compile-time magic to produce obfuscated PIC strings and arrays.
evasion malware malware-development obfuscation shellcode signature-detection string-obfuscation
Last synced: 08 Nov 2024
https://github.com/mython-dev/mythosr4t
Remote Administration Tool (RAT) для операционных систем Windows, MythosR4T был написан на чистом Python и предназначен для удаленного управления компьютерами.
aiogram backdoor command-and-control malware malware-development python python3 rat remote-access-trojan remote-access-trojan-tool remote-administrative-tool remote-control remote-desktop virus viruses windows-malware
Last synced: 23 Jan 2025
https://github.com/aigptcode/no-logs-no-crime-fuck-etw
Python version Bypass the Event Trace Windows(ETW) and unhook ntdll.
fud fud-crypter fud-rat fud-stealer hack hacking hacking-tool hidden log malware malwares openai python python3 ransomeware rat trojan windows worm
Last synced: 25 Jan 2025
https://github.com/ahmedraja1/malware-development
Malware Development
cybersecurity malware malware-analysis malware-development malware-research
Last synced: 17 Nov 2024
https://github.com/vasco0x4/simpleprocesshollowing
simple shellcode injector for Windows / Process Hollowing
malware processhollowing shellcode shellcode-loader
Last synced: 08 Nov 2024
https://github.com/gexos/malrepo
A collection of malware samples caught by DIONAEA Honeypot
malware malware-analysis malware-research malware-samples
Last synced: 18 Nov 2024
https://github.com/systemjargon/pi-hole
A trove of content relating to Pi-hole. How-to guides, blocklists, allowlists, regex lists, safesearch, scripts.
ad-blocker adblock adblock-list adguard-list adguardhome blacklist dns dns-filter dns-over-https dns-server firebog hosts malware pi-hole pi-hole-adlists-updater pi-hole-blocklists pihole privacy safesearch ublock-list
Last synced: 13 Nov 2024
https://github.com/jojocrafttv/discord-token-grabber-java
A Discord Token Grabber (educational purposes only)
discord discord-token discord-token-grabber grabber grabber-token malware token token-grab
Last synced: 19 Dec 2024
https://github.com/darkcodersc/peof-detector
Little project that use my tiny library to handle PE File EOF Data.
delphi eof eof-analysis malware pascal
Last synced: 11 Jan 2025
https://github.com/machine1337/fudransome
Generate FUD Ransomeware For Windows, Linux and MAC OS
antivirus-evasion applehacking cybersecurity encryption evasions exploit hacking linuxransomeware machine1337 malware obfuscation python ransomware windowsransomeware
Last synced: 10 Nov 2024
https://github.com/umair9747/staticot
A BASH script to automate simple tasks related to static malware analysis
cybersecurity malware malwareanalysis security static-malware-analysis staticanalysis threatintel threatintelligence
Last synced: 19 Nov 2024
https://github.com/cdhtlr/barikade
Barikade is a Windows Service to close processes running outside allowed directories followed by network connections blocking to prevent the use of legit software to bypass Windows Firewall and download malware.
access-control allowlist applocker firewall malware packet-capture windivert windows-hardening windows-service wmi
Last synced: 11 Jan 2025
https://github.com/loneicewolf/gauss-src
GAUSS MALWARE Source [Striking similarities with Duqu, FlameR!, Fanny, StuxNet and more.] Source coming soon! + Binaries + Video showing live-action (what it does, how to remove it & for those interested - how to change the source, compile it, and run it) (Only as a Academical Exercise obviously)
duqu equationgroup fannybmp gauss loneicewolf malware stuxnet
Last synced: 26 Dec 2024
https://github.com/aigptcode/analysis-tcp-udp
This project implements a cybersecurity system for detecting anomalies and intrusions in network traffic. It utilizes machine learning models, network monitoring tools, and intrusion detection systems to monitor and respond to security threats in real-time.
malware malware-analysis malware-detection python python3 ransomeware-python ransomware tcp udp
Last synced: 25 Jan 2025
https://github.com/futurecomputing4ai/kilograms
KiloGram algorithm for finding the top-k most frequent n-grams for large values of n quickly with fixed memory.
feature-extraction machine-learning malware n-grams
Last synced: 21 Nov 2024
https://github.com/djnnvx/slides
automotive malware pentesting reverse-engineering slides talk
Last synced: 28 Jan 2025
https://github.com/shreyansh26/opcodes-for-malware-detection
Implementation of the paper "Opcodes as predictor for malware " by Daniel Bilar
elf hacktoberfest malware malware-detection opcodes
Last synced: 14 Nov 2024
https://github.com/0xflux/etw-bypass-rust
Event Tracing for Windows EDR bypass in Rust
edr edr-bypass edr-evasion ethical-hacking ethical-hacking-tools etw etw-bypass etw-evasion hacking malware malware-research pentest pentest-tool pentesting red-team redteam redteam-tools redteaming rust
Last synced: 21 Jan 2025
https://github.com/keowu/malware
Notes from my malware analysis hobby, use it (don't take everything for granted and research it yourself, don't cite me as a reference for anything, constructive criticism is welcome), this is CI for my blog
analysis android hobby linux malware reverse-engineering windows
Last synced: 16 Jan 2025
https://github.com/sallie-may/bad-stealer-analysis
A simple leak of a stealer that start to show up on as lot of python program as dualhook
account leak malware miner miner-crypto monitoring python rat russian source-code src stealer
Last synced: 16 Nov 2024
https://github.com/3022-2/raccoon_clipper
A GUI based program for making customised crypto stealing malware written in python
bitcoin bitcoin-clipper btc crypto crypto-clipper cryptoclipper cryptocurrency cryptojacking eth ethereum ethereum-clipper hacking litecoin litecoin-clipper ltc malware monero monero-clipper xmr
Last synced: 10 Oct 2024
https://github.com/jaredthecoder/codestock2017-stuxnet-forensic-analysis
Slides and demo script for my talk at Codestock 2017
forensics malware stuxnet volatility windows
Last synced: 10 Nov 2024
https://github.com/souhardya/improtector
Old 32 bit PE executable protector / crypter
anti-debug av-bypass av-evasion crypter malware malware-research windows
Last synced: 17 Nov 2024
https://github.com/black-hell-team/thebhtinjector
TheBhTiNjector is a filebinder that can concatenate two or more files of some extensions that preserves the integrity of the files and gives you the option of injecting shellcode into them.
binder cpp file-binder file-binding hides-malware malware malware-analysis malware-sample malware-samples ransomware ransomware-builder ransomware-source-code remote-access-tool remote-administration-tool shellcode shellcode-injector trojan trojan-builder trojan-rat
Last synced: 08 Nov 2024
https://github.com/64kramsystem/palware
My modern disassemblies of paleolithic (DOS-era) malware!
asm dos malware malware-analysis virus virus-dos
Last synced: 22 Jan 2025
https://github.com/melardev/xeytanwin32-async-rat
WORK IN PROGRESS. RAT written in C++ using Win32 API
backdoor malware networking rat remote-administration-tool sockets trojan win32 win32api windows
Last synced: 26 Nov 2024
https://github.com/melardev/xeytanwxcpp-rat
Work in Progress. RAT written in C++ using wxWidgets
backdoor cpp desktop malware networking poc rat remote-administration-tool sockets trojan wx wxwidgets
Last synced: 26 Nov 2024
https://github.com/vrikodar/cspydoor101
Basic Client server backdoor one zero one in python3
backdoorpython backdoors backdoors-created malware payload-generation python reverse-shell socket-communication undetectable-rat
Last synced: 07 Nov 2024
https://github.com/0x00wolf/pathbyter-hybrid-encryption-ransomware-with-multiprocessing-in-python
Pathbyter is a lightning fast proof-of-concept ransomware that uses RSA wrapped AES, multiprocessing, in memory key encryption, appends encrypted AES keys to files, and other tactics utilized by advanced threat actors like Conti, REvil, WannaCry, Ryuk, Lockbit, etc.
aes-128 cipher-block-chaining cipher-text conti cryptography cybersecurity decryption encryption malware malware-development proof-of-concept python ransomware rsa-2048 rsa-4096 rsa-wrap-aes system-programming wannacry
Last synced: 05 Nov 2024
https://github.com/loneicewolf/duqu
DUQU MALWARE SOURCE + BINARY + More coming
eqgrp fannybmp loneicewolf malware
Last synced: 26 Dec 2024
https://github.com/sebdraven/petojson
Serialize PE to Json based on PE-Parse
json malware pe-parse serialisaton
Last synced: 30 Oct 2024
https://github.com/easylist/listear
قائمة الفلاتر العربية المكمِّلة للقائمة الفرنسية و الإنجليزية لحظر الإعلانات و المخصص للإستخدام مع إضافات منع الإعلانات التي تدعم بنية الفلتر آدبلوك بلس.
adblock adblock-ar adblock-list adblock-plus adware arabic-adblock blacklist bloqueur-pub-ar e3lan easylist filterlist hosts hosts-ar hostsfile listear malware pi-hole publicite-ar reklam ublock
Last synced: 02 Dec 2024
https://github.com/melardev/xeytanqpp-rat
WORK IN PROGRESS. RAT written in C++ using Qt framework
backdoor cpp desktop malware networking qt rat remote-administration-tool sockets trojan
Last synced: 26 Nov 2024
https://github.com/justalghamdi/overwrite-windows-mbr
Over Write Windows Master Boot Record with my own Boot .
assembly bootloader c malware mbr notpetya over-write-mbr overwrite overwrite-mbr petya windows-mbr
Last synced: 19 Nov 2024
https://github.com/un1xg0d/quackattack
Automated credential stealer for the USB Rubber Ducky.
duckyscript lazagne malware powershell python usb-rubber-ducky
Last synced: 18 Nov 2024
https://github.com/thenewattacker64/nocumtoday
Simple Malware To block porn from your
Last synced: 08 Nov 2024
https://github.com/bl4ck44/paradox
Virus que formatea por completo la PC.
batch malware virus windows windows-10 windows-defender
Last synced: 22 Nov 2024
https://github.com/bstnbuck/itssoeasy
A Linux/Windows Ransomware PoC written in Python, Go and C
c-ransomware-poc go-ransomware-poc malicious malware malware-research malware-samples poc python-ransomware-poc ransomware
Last synced: 03 Dec 2024
https://github.com/dethada/ransomware
Ransomware without the ransom | Targeted at Linux systems
cryptography malware ransomware
Last synced: 11 Nov 2024
https://github.com/cpscript/pythonic
"PythoniCryptor" A ransomware, This ransomware works like petya, encrypting your entire drive... EXCEPT you can't purchase your key.
asm assembly encrypt encryptor friendsly fun funny harm malware petya ransom ransomware windows-10
Last synced: 18 Jan 2025
https://github.com/ivan-sincek/malware-droppers
Custom malware droppers written in multiple languages.
c-sharp decoder defensive-security encoder ethical-hacking malware mimikatz offensive-security penetration-testing process-hollowing red-team-engagement reverse-engineering security visual-studio windows windows-penetration-testing
Last synced: 16 Oct 2024
https://github.com/qundao/mirror-softcnkiller
【镜像】四海一叶秋 / 流氓软件黑名单: 流氓软件目录、数字签名黑名单。<https://gitee.com/softcnkiller/data> <https://github.com/SiHaiYiYeQiu/SoftCnKiller> <https://softcnkiller.blog.csdn.net/article/details/104799162> <https://free.lanzoui.com/b0cpu1guf>
Last synced: 22 Dec 2024
https://github.com/keowu/wintapix
Reversed WintaPix Malware Source code | That targets countries in the Middle East and abuse KeServiceDescriptorTable(SSDT), persistence and filesystem.
malware poc reverse-engineering sourcecode-analysis wintapix
Last synced: 16 Jan 2025
https://github.com/cpscript/funnyware
A repository of dumb but funny malware... made my me and some friends :D
fun funny hacks malware pentest ransomware trash virus
Last synced: 17 Nov 2024
https://github.com/sameetandpotatoes/keylogger
"Malware" that logs all user input to an external server, with some extra bells and whistles
keylogger malware mongo-database mongodb multiplatform python
Last synced: 16 Nov 2024
https://github.com/umair9747/yara-rules
This repository contains a list of known YARA rules which researchers can use according to their needs.The repository is opensource and can be used by the end users as long as they follow the GNU GENERAL PUBLIC LICENSE V3.
cybersecurity hacktoberfest malware malware-analysis threat-hunting threat-intelligence yara yara-rules
Last synced: 20 Jan 2025
https://github.com/culturally/btc-clipper
Simple Bitcoin Stealer By Manipulating Clipboard
bitcoin bitcoin-malware bitcoin-stealer btc btc-clipper btc-stealer malware
Last synced: 28 Jan 2025
https://github.com/lucas310302/coin-nest
XMR Miner Malware
av-bypass av-evasion malware miner monero monero-mining persistance privelage-escalation python xmr
Last synced: 14 Oct 2024
https://github.com/aigptcode/iphoneprofile
ساخت پروفایل برای وصل انتن ایفون بدون رجیستر 🦹♀️ Configuration Profile Generator
android antenna boost hack iphone iphone-app malware phone phone-hack plist profile proxy ransomware vpn
Last synced: 25 Jan 2025
https://github.com/aniko33/unicorn
C2 extensible for post-explotation and remote control
backdoor c2 c2-framework cli flask fud gui hacking malware malware-developing metasploit-framework post-exploitation python rat rat-fud rsa rust salsa20
Last synced: 06 Nov 2024
https://github.com/smed79/easylist-hosts
Unified EasyList hosts blacklist for use with DNS and domain blocking tools as pi-hole for the purpose of blocking bad domains used for serving ads, tracking, mining, malware and other nasty content.
adblock adblock-plus adguard blacklist blocklist dns dnsforge domains easylist easyprivacy hosts hosts-file malware nextdns personaldnsfilter phishing pi-hole privacy security ublock
Last synced: 10 Oct 2024
https://github.com/morpheuslord/prank.batchfile
prank can be modified and do some serious damage be carefull
Last synced: 23 Jan 2025
https://github.com/melardev/xeytanj-rat
WORK IN PROGRESS. RAT written in Java.
backdoor desktop java malware networking rat remote-admin-tool remote-administration-tool remote-control sockets
Last synced: 26 Nov 2024
https://github.com/whots/rosaryav
Lightweight Threat Detection System - (Base)
antivirus detection malware malware-protection onlyfans vulnerability windows
Last synced: 07 Nov 2024
https://github.com/rjzak/decompressingyara
For running Yara rules on malware samples stored in compressed files.
Last synced: 15 Oct 2024
https://github.com/ring0-c0d3-br34k3r/stuxnet-rootkit
Stuxnet extracted binaries by reversing & Stuxnet Rootkit Analysis
driver kernel malware malware-analysis malware-development malware-research reverse-engineering rootkit rootkit-kernel stuxnet stuxnet-memory-analysis stuxnet-report stuxnet-source zero-day
Last synced: 16 Nov 2024
https://github.com/calinux-py/flipper
FlipperZero - Mix of random flipper zero ducky scripts
badusb fliperzeroscripts flipper flipper-badusb flipper-scripts flipper-zero flipperzero flipperzero-badusb flipperzero-scripts malware malware-analysis malware-development malware-sample malware-samples memory-exploits powershell python ransomware
Last synced: 16 Nov 2024
https://github.com/xelroth/dedsec-ransomware
Deobfuscated Verison of DEDSEC ransomware
dedsec dedsec-ransomware deobfuscated-ransomware hack malware python-ransomware ransomware
Last synced: 03 Jan 2025
https://github.com/ruturaj4/mobile-security-paper_summaries
Papers summaries of some of the most important Mobile Security Papers 📃
adsdk android android-permissions android-sdk ios malware mobile-app mobile-security ransomware research-paper-explanation research-paper-summaries
Last synced: 11 Oct 2024
https://github.com/s0rg/phpunisher
Finds smelly php code pieces
golang-application malware php php-analyzer php-antimalware scanner security static-analysis
Last synced: 17 Nov 2024
https://github.com/thenewattacker64/malware-toolkit
Simple py Script will contain a Different Functions to help with Malwares
antivirus-evasion malware metasploit shellcode
Last synced: 08 Nov 2024
https://github.com/mykhis/s500-rat-hvnc-happ-hidden-browser-hrdp-reverse-proxy-crypto-monitor
The S-500 G2 Rat Hvnc stands as a pinnacle of remote administration tools, complemented by its advanced Hvnc capabilities.
backdoor hvnc hvnc-cracked hvnc-download hvnc-malware hvnc-rat hvnc-source-code malware rat remote-acces-tool remote-access-tool remote-access-trojan remote-access-trojan-tool remote-control reverse-shell socket tool windows
Last synced: 21 Jan 2025
https://github.com/red-team-444/stealth-shell
This tool generates an undetectable Windows reverse shell PowerShell script. Users can configure IP and Port according to their requirements. The generated script is obfuscated to avoid detection by antivirus software.
bypass-windows-defender bypasswindow10 malware ngrok offensive-security powershell ps2exe python3 redteam-tools reverse-shell windows-10
Last synced: 11 Oct 2024
https://github.com/vehanrajintha/sorillus-crack
Sorillus Crack Free for everyone
cookie-logger cracked discord-token-grabber free fu fud fud-crypter fud-crypter-2024 fud-rat malware password-stealer rat remote-access-tool remote-administration-tool sorillus sorillusrat startup
Last synced: 22 Jan 2025
https://github.com/vasco0x4/shellloader_hub
Shellcode Loader Library.
av-bypass av-evasion dll-hijacking dll-hooking dll-injection indirect-syscall loader malware red-teaming redteam shellcode-loader
Last synced: 29 Jan 2025
https://github.com/jaybrown/application-launch-monitor-alm-
Extend macOS Gatekeeper functionality by verifying applications at every launch
anti-malware anti-virus antimalware antivirus codesign gatekeeper macos malware privacy security
Last synced: 20 Nov 2024
https://github.com/lekssays/malrec
A Blockchain-based Framework for Malware Recovery in IoT
blockchain hyperledger-caliper hyperledger-fabric ipfs ipfs-blockchain malware
Last synced: 10 Nov 2024
https://github.com/r3dhulk/antivirus
Anti Virus Tool for windows and linux
antivirus computer-antivirus fun funproject gui malware malware-analysis powerful python safe safety virus
Last synced: 12 Nov 2024
https://github.com/loneicewolf/hsliw-bootkit
HSLIW-BOOTKIT - :warning: HSLIW is an Bootkit made at firmware level of a Disk. I made for some specific brands of SSD and HDD disks; and I am still hesitating to make this repo, but will redact anything that shouldn't be public. :warning:
bootkit equationgroup-inspired malware persistence rootkit rootkits shadowbrokers-inspired
Last synced: 26 Dec 2024
https://github.com/loneicewolf/nls_933w_dll
[+] nls_933w.dll + [+] WIN32M.SYS MALWARE- ONLY FOR ACADEMICAL RESEARCH PURPOSES!
bootkit cia eqgrp equationgroup fannybmp fannyworm gru loneicewolf malware malware-re malware-research malware-reverse malwares nls933w nsa rootkit stuxnet william-martens win32msys
Last synced: 26 Dec 2024
https://github.com/0xvpr/rust-malware-concept
x64 Rust malware for windows.
malware poc proof-of-concept rust shell tcp-sockets virus windows
Last synced: 09 Nov 2024