Commit Graph

  • b68c3d338a
    Merge af76f2befd into b497899ff3 #81 oklahomadev 2024-06-21 10:49:46 +0200
  • af76f2befd
    fix typo #81 oklahomadev 2024-06-21 10:41:40 +0200
  • b497899ff3 Update changelog master v0.6 dev Alberto Ortega 2021-11-09 17:17:18 +0100
  • 6fd6a0dac8 Bump version Alberto Ortega 2021-11-09 17:16:20 +0100
  • 2a62166a5f Update README Alberto Ortega 2021-11-09 17:05:34 +0100
  • 60c1edf42b Update README screenshot Alberto Ortega 2021-11-08 21:05:39 +0100
  • ad8b3dc701 Add v06 screenshot Alberto Ortega 2021-11-08 21:01:32 +0100
  • f658ccc959 Add memory PE image traces output Alberto Ortega 2021-11-08 20:45:19 +0100
  • c6c28ab896 Add BeingDebugged debugger detection Alberto Ortega 2021-11-08 19:26:39 +0100
  • d69f67157f Fix compiler warnings Alberto Ortega 2021-11-08 19:13:41 +0100
  • 9d0835bf37 Remove hooks and cuckoo detections in 64 bit compilation Alberto Ortega 2021-11-08 14:18:36 +0100
  • 8b9e52be04 Ignore .res Alberto Ortega 2021-11-08 14:01:26 +0100
  • 6eeda58247 Add pafish_get_PEB to access PEB, adapt for 64-bit support, updated access to NumberOfProcessors via PEB Alberto Ortega 2021-11-08 13:59:05 +0100
  • d56dea6e23 Add Makefile for 64-bit building Alberto Ortega 2021-11-07 21:05:20 +0100
  • 898ddebd6d Compiler macros indentation fixes Alberto Ortega 2021-11-07 21:04:34 +0100
  • 7155a2451e Adapt main.c and checks execution for 64-bit compilation Alberto Ortega 2021-11-07 20:43:10 +0100
  • ad1de9896a Minor cosmetic changes in console output Alberto Ortega 2021-11-07 19:52:10 +0100
  • 91cced1842 Fix tab in main.c Alberto Ortega 2021-11-07 19:32:26 +0100
  • d78a2e8fb7 Cosmetic changes in RTT windows Alberto Ortega 2021-11-07 19:13:29 +0100
  • a3289c135b Restore window after analysis finished Alberto Ortega 2021-11-07 18:19:27 +0100
  • febe5028d0 rtt.c rename global variables and move them up, indentation fixes Alberto Ortega 2021-11-07 18:13:55 +0100
  • 04191954f6 Makefile files indentation Alberto Ortega 2021-11-07 17:53:10 +0100
  • 01b5da03d5
    Merge pull request #72 from jgru/add-reverse-turing-tests Alberto Ortega 2021-11-07 17:45:42 +0100
  • 14b63b65db Remove .exe files from git Alberto Ortega 2021-11-07 13:37:24 +0100
  • f68d74fea2 Minimize console window on start up #72 Jan Gru 2021-11-07 06:53:57 +0100
  • ebb47f35ef Add reverse turing tests Jan Gru 2021-10-30 16:54:49 +0200
  • 62dad68149
    Update README.md Alberto Ortega 2021-10-04 18:13:50 +0200
  • 57e6b8d4ff
    Create FUNDING.yml Alberto Ortega 2021-10-02 12:05:18 +0200
  • 516161e3f9
    Update README.md Alberto Ortega 2021-09-30 20:33:33 +0200
  • 6c1fabdf8a
    Merge pull request #62 from virajchitnis/master Alberto Ortega 2019-02-19 10:17:35 +0100
  • 44cb9357a2
    Automatically build pafish during Vagrant initialization #62 Viraj Chitnis 2019-02-16 14:23:31 +0000
  • e5b57d942c
    Added Vagrantfile Viraj Chitnis 2019-02-16 14:15:38 +0000
  • 48adfe5ea1 Merge 4dd1e14c1a into 184b3fc3d5 #36 Duarte Silva 2017-02-06 09:17:44 +0000
  • f78d0f3e71 Merge c91da10195 into 184b3fc3d5 #56 wPgg1es 2016-08-27 11:50:43 +0000
  • 184b3fc3d5 Bump v058 v0.5.8 Alberto Ortega 2016-08-27 13:42:56 +0200
  • c91da10195 Status update to #49 after repair. #56 wPgg1es 2016-08-18 21:10:46 +0800
  • a361ea64e4 Merge branch 'shawndwells-typos' into dev-chaos Alberto Ortega 2016-07-20 21:25:22 +0200
  • 20b878ee66 Fix typo in pafish/cuckoo.c (informnation -> information) #54 Shawn Wells 2016-07-18 22:54:29 -0400
  • 34b0c56f8c Add -Wpedantic to Makefiles Alberto Ortega 2016-06-11 18:42:42 +0200
  • 8f84f98034 re #49 fixes LocalFree after advanced list Alberto Ortega 2016-06-11 18:41:27 +0200
  • d13b9cb1d0 Update README with screenshot Alberto Ortega 2016-03-16 19:43:41 +0100
  • df774da10f Add v057 screenshot Alberto Ortega 2016-03-16 19:38:13 +0100
  • 9d84b0d7f0 Bump v057 v0.5.7 Alberto Ortega 2016-03-16 19:36:23 +0100
  • 3dbd5e3923 Minor change in KVM hv vendor string Alberto Ortega 2016-03-02 23:07:36 +0100
  • d4ca81c7a5 fix #47 add hypervisor vendor checking Alberto Ortega 2016-03-02 20:59:19 +0100
  • 6264d96ca2 Function to read HV vendor information, added to logging Alberto Ortega 2016-03-02 20:27:03 +0100
  • a6a0478915 Bump v056 v0.5.6 Alberto Ortega 2015-12-28 16:26:18 +0100
  • 21efd60b45 Disabled check_hook_DeleteFileW_m1 because it causes FP in Win 8 Alberto Ortega 2015-12-28 16:21:38 +0100
  • 1c7d5c3f2b Update README Alberto Ortega 2015-12-28 13:58:46 +0100
  • 9ab9e0fb3b re #46 add IsNativeVhdBoot detection Alberto Ortega 2015-12-27 12:25:53 +0100
  • 896f26f3be Fixes warning in latest mingw Alberto Ortega 2015-12-27 12:17:18 +0100
  • 7420c27542 re #43 Include a DNS request for each detection, useful in restrictive sandboxes Alberto Ortega 2015-12-23 19:42:13 +0100
  • eac42caae3 re #45 Add uptime test Alberto Ortega 2015-12-22 21:12:54 +0100
  • 6b27791837 Bump v055 v0.5.5 Alberto Ortega 2015-10-08 19:32:01 +0200
  • feeba7ba8e Minor includes changes Alberto Ortega 2015-10-08 19:22:39 +0200
  • 72296dacd6 Disable a not so reliable bochs check Alberto Ortega 2015-10-08 19:14:27 +0200
  • 044760116a Refactor of hooks detection function, add 2 more functions to check Alberto Ortega 2015-09-04 18:24:53 +0200
  • 54f33a2929 Minor refactor in GetAdaptersAddresses functions Alberto Ortega 2015-08-30 18:44:49 +0200
  • 017d5dfbbd Add VMware detection based on network adapter name Alberto Ortega 2015-08-30 18:35:22 +0200
  • 618037ba25 indent -linux main.c Alberto Ortega 2015-08-30 01:34:07 +0200
  • cc31829b45 Minor includes change Alberto Ortega 2015-08-29 14:06:17 +0200
  • b0b72c4e5e Refactor main.c, link new Qemu and Bochs detections in main Alberto Ortega 2015-08-29 13:55:42 +0200
  • ea6617f45b Add Bochs detections based on CPU information Alberto Ortega 2015-08-29 00:49:41 +0200
  • c65cfb5adc Add new qemu detection based on CPU brand string Alberto Ortega 2015-08-29 00:29:41 +0200
  • 94dca540db Add cpu functions to query Processor Brand String Alberto Ortega 2015-08-28 23:12:07 +0200
  • 89cf87ead9 re #40 add neutrino bochs detection via regkey Alberto Ortega 2015-08-26 19:09:52 +0200
  • 49a6f3a447 Fix minor issue with wbemidl.h import Alberto Ortega 2015-08-26 19:07:25 +0200
  • 4e434ba6f3 Bump v054 v0.5.4 Alberto Ortega 2015-07-12 17:26:26 +0200
  • 3e322f2b97 Change hi_(vmware|virtualbox)_wmi for generic trace files Alberto Ortega 2015-07-12 17:15:13 +0200
  • 4fe2cc3c91 5.4 candidate build Alberto Ortega 2015-07-11 12:54:08 +0200
  • 3a564d60e7 Minor style change (cppcheck) Alberto Ortega 2015-07-11 12:51:29 +0200
  • bc9971f06e Merge branch 'serializingme-dev-hackingteam-v1' into dev-chaos Alberto Ortega 2015-07-11 11:50:17 +0200
  • 0d7d8fb43e Added HackingTeam anti-Cuckoo function as a check #39 Duarte Silva 2015-07-10 20:21:55 +0100
  • 229e1eb751 Added HackingTeam anti-VM WMI checks - VirtualBox check of the device identifiers - VMWare check of the serial number Duarte Silva 2015-07-10 15:21:06 +0100
  • 28d2889d0d Merge branch 'serializingme-dev-fixcompilewarn-v1' into dev-chaos Alberto Ortega 2015-07-08 12:37:09 +0200
  • 93f25aa6dc Fixed warning about redefined variables - "KEY_WOW64_32KEY" redefined - "KEY_WOW64_64KEY" redefined #37 Duarte Silva 2015-07-08 10:01:28 +0100
  • 1033f2818a Fixed warning "Please include winsock2.h before windows.h" Duarte Silva 2015-07-08 09:59:00 +0100
  • 4dd1e14c1a First commit of Curious Fish. #36 Duarte Silva 2015-06-04 19:48:42 +0100
  • 887cdd4877 Bump v053 v0.5.3 Alberto Ortega 2015-06-02 19:42:31 +0200
  • 6abe138edf Minor refactor in utils.c Alberto Ortega 2015-05-31 16:36:59 +0200
  • d957b6bcd1 Handle registry keys redirection in x86_64 Alberto Ortega 2015-05-31 16:31:27 +0200
  • ea2888161b re #33 Add VMware MAC detection, minor refactor Alberto Ortega 2015-05-30 20:50:22 +0200
  • 6cae2f7fa8 Merge branch 'serializingme-dev-memorycheck-v2' into dev-chaos Alberto Ortega 2015-05-30 20:09:36 +0200
  • 9ae8cf6a81 Merge branch 'dev-memorycheck-v2' of https://github.com/serializingme/pafish into serializingme-dev-memorycheck-v2 Alberto Ortega 2015-05-30 20:09:21 +0200
  • f46dcb8a57 Merge branch 'serializingme-dev-syswowfix-v2_1' into dev-chaos Alberto Ortega 2015-05-30 20:07:23 +0200
  • 17108f3e55 Merge branch 'dev-syswowfix-v2' of https://github.com/serializingme/pafish into serializingme-dev-syswowfix-v2_1 Alberto Ortega 2015-05-30 20:06:52 +0200
  • 7c591a0b2a Changed check from available to total physical memory. #35 Duarte Silva 2015-05-27 19:35:46 +0100
  • 20872a383f Typographical error correction. #34 Duarte Silva 2015-05-27 19:34:06 +0100
  • fd10ee553e Merge branch 'serializingme-dev-syswowfix-v1' into dev-chaos Alberto Ortega 2015-05-20 11:25:12 +0200
  • 168f52cc58 Merge branch 'serializingme-dev-issue15-v1' into dev-chaos Alberto Ortega 2015-05-20 11:19:04 +0200
  • ea6e3cf704 Merge branch 'serializingme-dev-memorycheck-v1' into dev-chaos Alberto Ortega 2015-05-20 11:13:50 +0200
  • c88bdd2ade Merge 2d2d410f31 into b0a2aeeda3 #32 Duarte Silva 2015-05-18 15:13:08 +0000
  • 2d2d410f31 Disabled Wow64 file system redirection: - When running pafish in a 64 bits sandbox many file checks failed; - This will allow for pafish to access the native system32 directory. #32 Duarte Silva 2015-05-18 15:17:16 +0100
  • 591d71a4b9 Merge 01ac4d2153 into b0a2aeeda3 #30 Duarte Silva 2015-05-18 14:23:25 +0000
  • 01ac4d2153 Added a check for less than one GiB of memory. #30 Duarte Silva 2015-05-18 13:30:43 +0100
  • 01879489d4 Added extra checks for VMWare and Wine. #31 Duarte Silva 2015-05-18 15:20:20 +0100
  • b0a2aeeda3 Merge branch 'serializingme-dev-fixlinuxcompile-v2' into dev-chaos Alberto Ortega 2015-05-16 13:30:55 +0200
  • 84060717c1 Removed unnecessary handling code. #29 Duarte Silva 2015-05-15 15:53:23 +0100
  • 452bb62508 Merge 392aa0f5c5 into 73e178fc5d #28 Duarte Silva 2015-05-14 12:58:22 +0000
  • 392aa0f5c5 Fix the compilation under Linux with MinGW cross-compiler. #28 Duarte Silva 2015-05-14 13:52:51 +0100