PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs code dynamic analysis, extracting malware hosting URLs and checking http response.It can also detect if the malware attempts to inject shellcode into memory.
☆239Apr 28, 2024Updated 2 years ago
Alternatives and similar repositories for PowerDecode
Users that are interested in PowerDecode are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PowerShell script for deobfuscating encoded PowerShell scripts☆437Feb 4, 2021Updated 5 years ago
- Volatility 3 Plugins☆21Oct 3, 2022Updated 3 years ago
- A tool for de-obfuscating PowerShell scripts☆71Apr 24, 2019Updated 7 years ago
- A guide to using Azure Data Explorer and KQL for DFIR☆124May 16, 2022Updated 4 years ago
- Help deobfuscate VBScript☆18Jul 1, 2022Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- PowerShell tools to help defenders hunt smarter, hunt harder.☆488Oct 29, 2025Updated 9 months ago
- MS Graph Commands and Tools for Blue Teamers☆51Feb 4, 2026Updated 6 months ago
- ☆210May 10, 2026Updated 3 months ago
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,625Aug 4, 2026Updated last week
- ☆20Oct 23, 2020Updated 5 years ago
- Artifact collection tool for *nix systems☆220Mar 20, 2024Updated 2 years ago
- Powershell script deobfuscation using AST in Python☆75Jul 7, 2026Updated last month
- ☆24Apr 22, 2025Updated last year
- ☆15Sep 26, 2023Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Evtx Log (xml) Browser☆60Mar 12, 2023Updated 3 years ago
- Scripts and a short guide for using them to tier an Active Directory. Made for BSides Copenhagen 2024☆41Oct 20, 2025Updated 9 months ago
- A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs☆841Aug 5, 2026Updated last week
- A powershell parser for https://github.com/ufrisk/MemProcFS☆45May 12, 2021Updated 5 years ago
- PowerShell script designed to help Incident Responders collect forensic evidence from local and remote Windows devices.☆114Aug 26, 2024Updated last year
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆93Mar 11, 2026Updated 5 months ago
- IDA plugin helping reverse-engineering rust binaries☆36Jul 31, 2024Updated 2 years ago
- A curated list of KAPE-related resources☆191May 1, 2025Updated last year
- A standalone DLL that exports databases in cleartext once injected in the KeePass process.☆299Mar 1, 2023Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows…☆2,140Dec 11, 2024Updated last year
- Windows symbol tables for Volatility 3☆99Jul 11, 2024Updated 2 years ago
- An ADCS honeypot to catch attackers in your internal network.☆334Jun 27, 2024Updated 2 years ago
- IDA plugin to deobfuscate emotet CFF☆18Apr 26, 2022Updated 4 years ago
- .NET tool used to enrich RPC telemetry☆103Jan 24, 2026Updated 6 months ago
- Practical Windows Forensics Training☆779Feb 16, 2026Updated 5 months ago
- NTFS file system specimens☆13May 21, 2026Updated 2 months ago
- Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.☆3,295Aug 3, 2026Updated last week
- Defeating Anti-Debugging Techniques for Malware Analysis☆12Oct 1, 2022Updated 3 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Proof-of-Concept software for creating inbound AD forest trusts.☆21Jun 25, 2025Updated last year
- Repository to publish sample use cases, templates, solutions, automations for Microsoft Defender Threat Intelligence (MDTI) product☆82Sep 9, 2024Updated last year
- FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is de…☆826Apr 18, 2026Updated 3 months ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆121Apr 8, 2023Updated 3 years ago
- Malware Samples that could be used for teaching students about malware analysis.☆64Apr 8, 2024Updated 2 years ago
- APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the …☆1,417Nov 7, 2024Updated last year
- Klara docker compose☆11May 19, 2020Updated 6 years ago