This DRAKVUF plugin implements VMI-based YARA scanning over virtual process address spaces.
-
Updated
Jun 12, 2026 - C++
This DRAKVUF plugin implements VMI-based YARA scanning over virtual process address spaces.
This DRAKVUF plugin enables VMI-based monitoring of emitted ETW events (Event Tracing for Windows).
Sandbox agentless de análise de malware (DRAKVUF + Wazuh + ClamAV) para detecção de ameaças evasivas via introspecção de VM (VMI).
Add a description, image, and links to the drakvuf-plugin topic page so that developers can more easily learn about it.
To associate your repository with the drakvuf-plugin topic, visit your repo's landing page and select "manage topics."