BigHugger
sk Skill · meltedinhex

detecting-process-injection-in-memory

Detects process injection in a memory image by identifying private executable regions with no file backing, RWX protections, and modified entry points using Volatility 3 malfind-style analysis. Activates for requests to detect process injection, find injected code in memory, or triage suspicious executable regions in a memory image.

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
Pythonmalfindvolatilitybashmemory-forensicsprocess-injectionmalware-analysis
Host repository
meltedinhex/analyst-ai-pack
Version
1.0.0
Licence
Apache-2.0
Host stars
22
Host language
Python