Karneades / malware-persistence
Collection of malware persistence and hunting information. Be a persistent persistence hunter!
☆176Updated 3 months ago
Alternatives and similar repositories for malware-persistence:
Users that are interested in malware-persistence are comparing it to the libraries listed below
- c2 traffic☆188Updated 2 years ago
- Malduck is your ducky companion in malware analysis journeys☆330Updated this week
- A guide on how to write fast and memory friendly YARA rules☆142Updated 2 months ago
- ☆130Updated last year
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆139Updated last year
- YARA rule analyzer to improve rule quality and performance☆99Updated 3 weeks ago
- ☆246Updated 11 months ago
- The Windows Malware Analysis Reversing Core Tools☆95Updated 4 years ago
- JPCERT/CC public YARA rules repository☆106Updated 4 months ago
- Unprotect is a python tool for parsing PE malware and extract evasion techniques.☆115Updated last year
- ☆129Updated last month
- Cobalt Strike Beacon configuration extractor and parser.☆152Updated 3 years ago
- A ProcessMonitor visualization application written in rust.☆178Updated last year
- A golang CLI tool to download malware from a variety of sources.☆143Updated last year
- This repo is a collection of Ransomware reports from vendors, researchers, etc.☆116Updated 2 years ago
- Collection of rules created using YARA-Signator over Malpedia☆128Updated 5 months ago
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆128Updated last year
- A python script developed to process Windows memory images based on triage type.☆262Updated last year
- ☆201Updated 6 months ago
- Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR☆237Updated last month
- Automatic YARA rule generation for Malpedia☆160Updated 2 years ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆104Updated last month
- Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.☆175Updated last week
- A repo that contains recursive directory listings (using PowerShell) of a vanilla (clean) install of every Windows OS version to compare …☆160Updated 5 months ago
- Misc Threat Hunting Resources☆374Updated 2 years ago
- Community modules for CAPE Sandbox☆96Updated 3 weeks ago
- Random hunting ordiented yara rules☆96Updated 2 years ago
- ☆68Updated 2 months ago
- A Cobalt Strike Scanner that retrieves detected Team Server beacons into a JSON object☆165Updated 2 years ago
- Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)☆578Updated last year