JPCERTCC / QuasarRAT-Analysis
QuasarRAT analysis tools and research report
☆25Updated last year
Alternatives and similar repositories for QuasarRAT-Analysis:
Users that are interested in QuasarRAT-Analysis are comparing it to the libraries listed below
- ☆22Updated last year
- Unpacking and decryption tools for the Emotet malware☆46Updated 3 years ago
- Sources code extracted from malwares for analysis☆36Updated last year
- ☆23Updated 4 years ago
- Links to malware-related YARA rules☆14Updated 2 years ago
- ☆34Updated 2 years ago
- ☆16Updated 3 years ago
- Tool to manage user privileges☆28Updated 5 years ago
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆62Updated 2 years ago
- Scripts, Yara rules and other files developed during malware investigations☆25Updated 2 years ago
- Tracking APT IOCs☆25Updated 4 years ago
- A small utility to deal with malware embedded hashes.☆49Updated last year
- The repository accompanying the Buer Emulation workshop☆24Updated 3 years ago
- Repository of Yara rules created by the Stratosphere team☆26Updated 3 years ago
- Community maintained list of most popular HIPS service and process names on a Windows Platform.☆43Updated 2 years ago
- Modular malware analysis artifact collection and correlation framework☆53Updated 9 months ago
- Tweettioc Splunk App☆20Updated 4 years ago
- ProcDot Malware Sandbox☆22Updated 3 months ago
- Tool to decrypt the configuration of NanoCore and dump all used plugins☆11Updated 4 years ago
- (Sim)ulate (Ba)zar Loader☆29Updated 4 years ago
- Generate YARA rules for OOXML documents.☆38Updated last year
- Specialized tool to dump Position Independent Code.☆21Updated 4 years ago
- Files for generating a C# source file that allows for memory-mapping "niceness" and then executing said "niceness"☆31Updated 5 years ago
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆51Updated 6 years ago
- Adapt practically persistence steadiness strategies working at Windows 10 utilized by sponsored nation-state threat actors, as Turla, Pro…☆20Updated 4 years ago
- Python3 script to generate a macro to launch a Mythic payload. Author: Cedric Owens☆46Updated 3 years ago
- A simple provider to analyse what gets passed into Microsoft's Anti-Malware Scan Interface☆14Updated 5 years ago
- ☆12Updated 3 years ago
- A library to parse, modify, and implement Malleable C2 profiles☆21Updated 6 years ago
- Experiments on the Windows Internals☆30Updated 5 years ago