MikeHorn-git / WAFS
Hardened your Windows OS against forensics analysis
☆21Updated 5 months ago
Alternatives and similar repositories for WAFS:
Users that are interested in WAFS are comparing it to the libraries listed below
- Lena's scripts/code/resources for malware analysis☆26Updated 10 months ago
- These FLARE-VM configuration files are designed to be help setup a purpose-built installation, remove unnecessary packages to help stream…☆14Updated last year
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆36Updated 2 months ago
- Linux #rootkit and #malware revealer☆24Updated 9 months ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆33Updated last week
- ☆27Updated 5 months ago
- Hive v5 file decryption algorithm☆34Updated 2 years ago
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆27Updated 2 years ago
- Quick ESXi Log Parser☆19Updated 4 months ago
- ETW forensic tool for Volatility3 plugin☆13Updated 5 months ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆51Updated 5 months ago
- a tiny program to consume from ETW providers for research☆47Updated 4 months ago
- A simple tool designed to create Atomic Red Team tests with ease.☆40Updated 2 months ago
- A cap/pcap packet parser to make life easier when performing stealth/passive reconnaissance.☆21Updated 9 months ago
- Contains compiled binaries of Volatility☆33Updated 3 months ago
- MalStatWare automates malware analysis with Python. Extract key details like file size, type, hash, path, and digital signature. It analy…☆29Updated last year
- Powershell Linter☆50Updated last week
- ☆17Updated 8 months ago
- Cheat sheet to detect and remove linux kernel rootkit☆58Updated 4 months ago
- Slides from my talk at the Adversary Village, Defcon 30☆29Updated 2 years ago
- A full analysis report detailing as much as possible of a Malware or a Threat☆29Updated 10 months ago
- Scan files for potential threats while leveraging AMSI (Antimalware Scan Interface) and Windows Defender. By isolating malicious content.☆16Updated 4 months ago
- A repository of curated lists with elements such as IoCs to use for threat hunting & detection queries.☆34Updated 9 months ago
- ☆39Updated last year
- A collection of my yara rules☆35Updated last year
- APT hub, It help's research to collect information and data on the latest APT activities. It collects data on APT profiles, IOCs(1 yr), a…☆51Updated last month
- Yara Rules for Modern Malware☆77Updated last year
- ☆22Updated 7 months ago
- ☆23Updated 2 months ago
- ☆19Updated 2 years ago