Skip to content

Instantly share code, notes, and snippets.

View testitesti22's full-sized avatar

testitesti22

View GitHub Profile
@testitesti22
testitesti22 / resources.md
Created March 30, 2021 11:26 — forked from muff-in/resources.md
A curated list of Assembly Language / Reversing / Malware Analysis -resources
@testitesti22
testitesti22 / ELAM.ps1
Created March 30, 2021 11:26 — forked from mattifestation/ELAM.ps1
ELAM driver approved anti-malware signer parser
function Get-ElamCertInfo {
<#
.SYNOPSIS
Extract early launch anti-malware certificate information from an ELAM driver.
Author: Matthew Graeber (@mattifestation)
License: BSD 3-Clause
.DESCRIPTION
INFO global: Vagrant version: 1.4.3
INFO global: Ruby version: 2.0.0
INFO global: RubyGems version: 2.0.14
INFO global: VAGRANT_DEFAULT_PROVIDER="vmware_fusion"
INFO global: VAGRANT_LOG="debug"
INFO global: VAGRANT_INSTALLER_EMBEDDED_DIR="/Applications/Vagrant/bin/../embedded"
INFO global: VAGRANT_INSTALLER_VERSION="2"
INFO global: VAGRANT_DETECTED_OS="Darwin"
INFO global: VAGRANT_INSTALLER_ENV="1"
DEBUG global: Loading core plugin: /Applications/Vagrant/embedded/gems/gems/vagrant-1.4.3/plugins/commands/box/plugin.rb