NexusFuzzy / Edison
Tool to decrypt encrypted strings in AgentTesla
☆16Updated 3 years ago
Alternatives and similar repositories for Edison:
Users that are interested in Edison are comparing it to the libraries listed below
- Go Lang Portable Executable Parser☆39Updated 4 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆38Updated 2 years ago
- TA505 unpacker Python 2.7☆47Updated 4 years ago
- Telsy CTI Research Team☆57Updated 4 years ago
- Handy scripts to speed up malware analysis☆35Updated last year
- ☆58Updated 4 years ago
- a modified version base on Tracecorn☆20Updated 5 years ago
- Generates YARA rules to detect malware using API hashing☆17Updated 4 years ago
- ☆15Updated 2 years ago
- Scripts, Yara rules and other files developed during malware investigations☆25Updated 2 years ago
- BinSequencer is a script designed to find a common pattern of bytes within a set of samples and generate a YARA rule from the identified…☆76Updated 3 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 3 years ago
- Resources for the workshop titled "Repacking the unpacker: Applying Time Travel Debugging to malware analysis", given at HackLu 2019☆40Updated 5 years ago
- A Maltego transform for VirusTotal vHash☆32Updated 5 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆75Updated 10 years ago
- Tools for inspecting YARA bytecode☆15Updated 4 years ago
- ☆13Updated 2 years ago
- ☆23Updated 11 months ago
- Steezy - Ghetto Yara Generation☆15Updated 2 years ago
- ☆98Updated 4 years ago
- A modular Karton Framework service that unpacks common packers like UPX and others using the Qiling Framework.☆55Updated 3 years ago
- ☆51Updated 6 years ago
- Capa analysis importer for Ghidra.☆61Updated 4 years ago
- ☆23Updated 5 years ago
- Trace ScriptBlock execution for powershell v2☆40Updated 5 years ago
- A collection of my public YARA signatures for various malware families☆29Updated 6 months ago
- This repository regroups the Yara Rules for the Unprotect Project☆24Updated 4 years ago
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆70Updated 11 months ago
- Liberating dem proprietary APT implants☆20Updated 5 years ago
- Imphash-like calculation on Golang binaries☆49Updated 2 years ago