Rafiot / pdfid
Clone of PDFiD by Didier Stevens, as a package and with some improvements.
☆31Updated 8 years ago
Related projects: ⓘ
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆40Updated 5 years ago
- Handy scripts to speed up malware analysis☆35Updated 11 months ago
- D-Scan project for office document analysis and generating flow diagram of macro in documents. For demo visit☆29Updated 2 months ago
- ☆23Updated 5 months ago
- Plugins for the Viper Framework☆14Updated 4 years ago
- hopefully a source-to-source deobfuscator, aiming at deobfuscating common scripts languages such as Powershell, VBA and Javascript. Curre…☆40Updated 5 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 6 years ago
- Collection of scripts used to analyse malware or emails☆19Updated 3 years ago
- A Maltego transform for VirusTotal Submitter Information☆30Updated 5 years ago
- Merge all Yara rules from official Yara github repository in one .yar file☆28Updated 6 years ago
- Light System Examination Toolkit (LISET) - logs & activity & configuration gathering utility that comes handy in fast Windows incident re…☆27Updated 8 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆24Updated 3 years ago
- TA505 unpacker Python 2.7☆45Updated 4 years ago
- Forensics triage tool relying on Volatility and Foremost☆24Updated 9 months ago
- Event Log Analysis Tools☆28Updated 7 years ago
- ☆22Updated 3 years ago
- Yara Scanner For IMAP Feeds and saved Streams☆27Updated 4 years ago
- unix_collector is a Live Response collection script for Incident Response on UNIX-like systems using native binaries. Supports AIX, Andro…☆30Updated last month
- An extendable tool to extract and aggregate IoCs from threat feeds☆32Updated 7 months ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆39Updated 6 years ago
- Validates yara rules and tries to repair the broken ones.☆38Updated 4 years ago
- Collection of YARA signatures from individual research☆41Updated 10 months ago
- Force-Directed Graph Generator for Volatility Ouputs☆26Updated 5 years ago
- Extract compressed memory pages from page-aligned data☆41Updated 5 years ago
- A map displaying threat actors from the misp-galaxy☆31Updated last year
- Providing timelines based on OSINT Reports☆32Updated last year
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆21Updated 7 months ago
- A collection of my public YARA signatures for various malware families☆28Updated last month
- Steezy - Ghetto Yara Generation☆15Updated last year
- Repository for scripts and tips for "Yara Scan Service"☆20Updated last year