KasperskyLab / OpenTIP-scannerLinks
Open-source file scanner that sends requests and optionally uploads files to OpenTIP.kaspersky.com.
☆24Updated 2 years ago
Alternatives and similar repositories for OpenTIP-scanner
Users that are interested in OpenTIP-scanner are comparing it to the libraries listed below
Sorting:
- volatility explorer☆92Updated 5 years ago
- MSI Dump - a tool that analyzes malicious MSI installation packages, extracts files, streams, binary data and incorporates YARA scanner.☆226Updated 2 years ago
- ☆44Updated 2 months ago
- ☆98Updated 4 months ago
- A small util to brute-force prefetch hashes☆77Updated 3 years ago
- Windows Shortcut file (LNK) parser☆118Updated 2 months ago
- AdHoc solutions☆48Updated 2 years ago
- Collection of tips, tools, arsenal and techniques I've learned during RE and other CyberSecStuff☆57Updated 4 months ago
- Windows Registry Knowledge Base☆195Updated last month
- VBScript & VBA source-to-source deobfuscator with partial-evaluation☆80Updated last year
- ☆21Updated 3 years ago
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆82Updated 2 years ago
- Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR☆252Updated 3 months ago
- Lazarus analysis tools and research report☆57Updated 2 years ago
- Python library for dissecting and parsing Cobalt Strike related data such as Beacon payloads and Malleable C2 Profiles☆185Updated 7 months ago
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆66Updated 3 years ago
- A C# based tool for analysing malicious OneNote documents☆118Updated 2 years ago
- Open Dataset of Cobalt Strike Beacon metadata (2018-2022)☆133Updated 3 years ago
- Project for identifying executables that have command-line options that can be obfuscated, possibly bypassing detection rules.☆182Updated last year
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆64Updated last year
- Elastic Security Labs releases☆84Updated 2 months ago
- Reads and prints information from the website MalAPI.io☆20Updated 3 years ago
- Linpmem is a linux memory acquisition tool☆95Updated 7 months ago
- A collection of tools and detections for the Sliver C2 Frameworj☆133Updated 2 years ago
- A ProcessMonitor visualization application written in rust.☆184Updated 2 years ago
- ☆36Updated 3 years ago
- Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and en…☆44Updated last year
- Dump quarantined files from Windows Defender☆73Updated 3 years ago
- A library for fast parse & import of Windows Eventlogs into Elasticsearch.☆86Updated 7 months ago
- Quickly search for references to a GUID in DLLs, EXEs, and drivers☆75Updated 4 years ago