R3MRUM / PSDecode
PowerShell script for deobfuscating encoded PowerShell scripts
☆417Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for PSDecode
- PowerShell Obfuscation Detection Framework☆725Updated 11 months ago
- Tool Analysis Result Sheet☆345Updated 6 years ago
- ☆294Updated 4 years ago
- ☆273Updated last year
- ☆417Updated last year
- PowerShell Remote Download Cradle Generator & Obfuscator☆822Updated 6 years ago
- Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)☆572Updated 6 months ago
- ☆732Updated last year
- Digital forensic acquisition tool for Windows based incident response.☆334Updated 6 months ago
- ☆347Updated 3 years ago
- Imaginary C2 is a python tool which aims to help in the behavioral (network) analysis of malware. Imaginary C2 hosts a HTTP server which …☆443Updated 2 years ago
- Automatic deployment of Cuckoo Sandbox malware lab using Packer and Vagrant☆234Updated last year
- FCL (Fileless Command Lines) - Known command lines of fileless malicious executions☆462Updated 3 years ago
- Investigate suspicious activity by visualizing Sysmon's event log☆417Updated 10 months ago
- Executes PowerShell from an unmanaged process☆476Updated 8 years ago
- An open source script to perform malware static analysis on Portable Executable☆309Updated last year
- Simulates common user behaviour on local and remote Windows hosts.☆283Updated 6 years ago
- Powershell Threat Hunting Module☆279Updated 8 years ago
- Volatility plugin for extracts configuration data of known malware☆485Updated 10 months ago
- Misc Threat Hunting Resources☆372Updated last year
- A PowerShell script to interact with the MITRE ATT&CK Framework via its own API☆367Updated 5 years ago
- RDP Bitmap Cache parser☆479Updated 11 months ago
- Test Blue Team detections without running any attack.☆271Updated 6 months ago
- Information released publicly by NCC Group's Cyber Incident Response Team☆474Updated 2 years ago
- A PowerShell module to deploy active directory decoy objects.☆223Updated 5 years ago
- Regipy is an os independent python library for parsing offline registry hives☆244Updated 2 months ago
- MITRE ATT&CK Windows Logging Cheat Sheets☆332Updated 6 years ago
- ☆279Updated 6 years ago
- A forensics tool to convert the data in the Windows srum (System Resource Usage Monitor) database to an xlsx spreadsheet.☆596Updated last week
- Pafish Macro is a Macro enabled Office Document to detect malware analysis systems and sandboxes. It uses evasion & detection techniques …☆278Updated 7 years ago