execute PE in memory Filelessly
-
Updated
Feb 8, 2025 - Python
execute PE in memory Filelessly
Plaguards: Open Source PowerShell Deobfuscation and IOC Detection Engine for Blue Teams. [Presented at Black Hat Asia and USA 2025 Arsenal]
Digital forensics tool to detect and snapshot malware file events during dynamic analysis. Catch malware creating/deleting files.
Fetch a remote C# Assembly and execute it in memory using Assembly.Load
Add a description, image, and links to the fileless-malware topic page so that developers can more easily learn about it.
To associate your repository with the fileless-malware topic, visit your repo's landing page and select "manage topics."