The following repository contains a modified version of SUNBURST with cracekd hashes, comments and annotations.
☆56Dec 23, 2020Updated 5 years ago
Alternatives and similar repositories for SUNBURST-Cracked
Users that are interested in SUNBURST-Cracked are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆22Dec 22, 2020Updated 5 years ago
- Capa analysis importer for Ghidra.☆64Dec 2, 2020Updated 5 years ago
- IDA Pro plugin for recognizing known hashes of API function names☆83May 12, 2022Updated 3 years ago
- VB Exe Parser is an IDA script written in Python. This script will help you to parse VB program internal structures. It can find: Event, …☆17Oct 8, 2016Updated 9 years ago
- C# alternative to the linux "cat" command... Prints file contents to console. For use with Cobalt Strike's Execute-Assembly☆15Jul 15, 2021Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Generates YARA rules to detect malware using API hashing☆17Mar 16, 2021Updated 5 years ago
- A Python parser for Rich Headers☆15Jun 2, 2015Updated 10 years ago
- Re-implementation of Apple's Continuity Protocol☆20Dec 5, 2019Updated 6 years ago
- ☆12May 22, 2018Updated 7 years ago
- Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.☆26Oct 25, 2020Updated 5 years ago
- A *very* imperfect attempt to correlate Kernel32 function calls to native API (Nt/Zw) counterparts/execution flow.☆28Dec 16, 2021Updated 4 years ago
- Emulates the VirusTotal "vt" YARA module for livehunt rule debugging/testing☆24May 29, 2023Updated 2 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆19Jul 15, 2021Updated 4 years ago
- Parse .NET executable files.☆86Apr 24, 2026Updated 2 weeks ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- An async Python client library for Empire's RESTful API☆26Dec 6, 2023Updated 2 years ago
- Windows system spy for Mouse, Keyboard and Gamepad(Joystick).☆15Jul 6, 2022Updated 3 years ago
- PE File Blessing - To continue or not to continue☆87Nov 23, 2019Updated 6 years ago
- Assembly block for finding and calling the windows API functions inside import address table(IAT) of the running PE file.☆84May 3, 2023Updated 3 years ago
- Proof of concept communications from C# via a web browser process☆21Feb 15, 2019Updated 7 years ago
- VB Exe Parser is an IDA script written in Python. This script will help you to parse VB program internal structures. It can find: Event, …☆18Oct 7, 2016Updated 9 years ago
- ☆262Apr 10, 2023Updated 3 years ago
- Extract Windows Defender database from vdm files and unpack it☆482Apr 21, 2026Updated 2 weeks ago
- A python script that allows a researcher to merge databases from Malshare and Malware Bazaar to created enrriched datasets from SIEM tool…☆27Apr 6, 2020Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Example code for EDR bypassing☆152Mar 7, 2019Updated 7 years ago
- Malware samples observed in the wild from time to time☆12Jul 29, 2019Updated 6 years ago
- #INFILTRATE20 raptor's party pack.☆30Nov 10, 2025Updated 5 months ago
- all credits go to @mgeeky☆65Oct 14, 2021Updated 4 years ago
- ☆27Feb 9, 2023Updated 3 years ago
- ReaCOM has got a lot of tools to use and is related to component object model☆74Feb 3, 2020Updated 6 years ago
- exp for CVE-2019-0887☆18Jan 15, 2021Updated 5 years ago
- PoC for hiding PE exports☆68Dec 19, 2020Updated 5 years ago
- Install Script for CS☆11Aug 26, 2019Updated 6 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Decompile of the Solorwinds "SUNBURST" Trojan associated with Campaign UNC2452 This is the SolarWinds.Orion.Core.BusinessLayer.dll file f…☆44Dec 14, 2020Updated 5 years ago
- GhostLoader - AppDomainManager - Injection - 攻壳机动队☆167May 27, 2020Updated 5 years ago
- Here are some tools I developed to help analyze malware☆11Nov 8, 2023Updated 2 years ago
- Extended Process List (Search functionality)☆29Jan 23, 2021Updated 5 years ago
- CFB is a ProcMon-style tool designed to assist capturing IRPs sent to Windows drivers.☆333Mar 26, 2024Updated 2 years ago
- Cobalt Strike Aggressor extension for Visual Studio Code☆138Jun 20, 2024Updated last year
- ☆18Feb 4, 2016Updated 10 years ago