-
malware_training_vol1 Public
Forked from hasherezade/malware_training_vol1Materials for Windows Malware Analysis training (volume 1)
Assembly UpdatedMar 24, 2021 -
LOLBAS-1 Public
Forked from LOLBAS-Project/LOLBASLiving Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
XSLT UpdatedJun 21, 2020 -
-
pe-sieve Public
Forked from hasherezade/pe-sieveScans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
C++ BSD 2-Clause "Simplified" License UpdatedAug 28, 2019 -
SysmonHunter Public
Forked from baronpan/SysmonHunterAn easy ATT&CK-based Sysmon hunting tool, showing in Blackhat USA 2019 Arsenal
JavaScript MIT License UpdatedAug 8, 2019 -
malware_analysis Public
Forked from hasherezade/malware_analysisVarious snippets created during malware analysis
Python UpdatedJul 23, 2019 -
Fofa-Cscan Public
Forked from wudicainiao/Fofa-Cscana Simple tool.Based on fofa.so
Python UpdatedJul 4, 2019 -
findcrypt-yara Public
Forked from polymorf/findcrypt-yaraIDA pro plugin to find crypto constants (and more)
Python BSD 3-Clause "New" or "Revised" License UpdatedJun 9, 2019 -
-
EvilClippy Public
Forked from outflanknl/EvilClippyA cross-platform assistant for creating malicious MS Office documents. Can hide VBA macros, stomp VBA code (via P-Code) and confuse macro analysis tools. Runs on Linux, OSX and Windows.
C# UpdatedMay 23, 2019 -
dsync Public
Forked from patois/dsyncIDAPython plugin that synchronizes disassembler and decompiler views
Python MIT License UpdatedMay 14, 2019 -
Invoke-Obfuscation Public
Forked from danielbohannon/Invoke-ObfuscationPowerShell Obfuscator
PowerShell Apache License 2.0 UpdatedApr 23, 2019 -
APT_REPORT Public
Forked from blackorbird/APT_REPORTInteresting apt report collection and some special ioc express
Python UpdatedApr 23, 2019 -
-
rdpwrap Public
Forked from edtrejo/rdpwrapRDP Wrapper Library
Pascal Apache License 2.0 UpdatedApr 16, 2019 -
-
signature-base Public
Forked from Neo23x0/signature-baseSignature base for my scanner tools
YARA Other UpdatedFeb 16, 2019 -
Vba2Graph Public
Forked from MalwareCantFly/Vba2GraphVba2Graph - Generate call graphs from VBA code, for easier analysis of malicious documents.
Python UpdatedFeb 7, 2019 -
HawkEyeDecryptor Public
Forked from CSIRT-SK/HawkEyeDecryptorConfig decryptor for HawkEye Keylogger - Reborn v9
C# UpdatedFeb 1, 2019 -
pyrebox Public
Forked from Cisco-Talos/pyreboxPython scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU
C GNU General Public License v2.0 UpdatedJan 29, 2019 -
Loki Public
Forked from Neo23x0/LokiLoki - Simple IOC and Incident Response Scanner
Python GNU General Public License v3.0 UpdatedJan 22, 2019 -
Windows-Kernel-Explorer Public
Forked from AxtMueller/Windows-Kernel-ExplorerA free but powerful Windows kernel research tool
UpdatedJan 12, 2019 -
conpot Public
Forked from mushorg/conpotICS/SCADA honeypot
Python GNU General Public License v2.0 UpdatedJan 9, 2019 -
malice Public
Forked from maliceio/maliceVirusTotal Wanna Be - Now with 100% more Hipster
Go Apache License 2.0 UpdatedJan 7, 2019 -
rtfraptor Public
Forked from edeca/rtfraptorExtract OLEv1 objects from RTF files by instrumenting Word
Python GNU Affero General Public License v3.0 UpdatedDec 18, 2018 -
tpotce Public
Forked from telekom-security/tpotceT-Pot Universal Installer and ISO Creator
C GNU General Public License v3.0 UpdatedDec 12, 2018 -
PowerSploit Public
Forked from PowerShellMafia/PowerSploitPowerSploit - A PowerShell Post-Exploitation Framework
PowerShell Other UpdatedDec 10, 2018 -
awesome-malware-analysis Public
Forked from rshipp/awesome-malware-analysisA curated list of awesome malware analysis tools and resources.
Other UpdatedNov 16, 2018 -
byob Public
Forked from malwaredllc/byobBYOB (Build Your Own Botnet)
Python GNU General Public License v3.0 UpdatedNov 14, 2018 -
QuasarRAT Public
Forked from quasar/QuasarRemote Administration Tool for Windows
C# MIT License UpdatedNov 9, 2018