RandomRhythm / YARA_Rules_UtilLinks
YARA duplicate rule detection and removal. YARA rule index creation. YARA rule file merger.
☆10Updated 2 years ago
Alternatives and similar repositories for YARA_Rules_Util
Users that are interested in YARA_Rules_Util are comparing it to the libraries listed below
Sorting:
- Deduplication of yara rules☆10Updated 7 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆26Updated 4 years ago
- A collection of my public YARA signatures for various malware families☆29Updated 11 months ago
- VSCode extension for the YARA pattern matching language☆64Updated last year
- Collection of YARA signatures from individual research☆44Updated last year
- Registry Explorer bookmark definitions☆43Updated 8 months ago
- Parses the WMI object database....looking for persistence☆33Updated 5 years ago
- ☆129Updated 7 months ago
- ☆23Updated 2 years ago
- Extract compressed memory pages from page-aligned data☆46Updated 6 years ago
- Messing around with clamav sigs☆26Updated 5 years ago
- Windows Prefetch parser. Supports all known versions from Windows XP to Windows 10.☆115Updated 7 months ago
- Hatching Triage public command-line utility and API library.☆71Updated last year
- Random hunting ordiented yara rules☆97Updated 2 years ago
- Automatic YARA rule generation for Malpedia☆161Updated 2 years ago
- Carve file metadata from NTFS index ($I30) attributes☆70Updated last year
- Yet another registry parser☆134Updated 3 years ago
- Windows registry samples☆24Updated 6 years ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆23Updated last year
- Fast lookup server for NSRL and other hash database used in digital forensic☆45Updated 3 years ago
- ☆68Updated 2 weeks ago
- Analysis of file (doc, pdf, exe, ...) in deep (emmbedded file(s)) with clamscan and yara rules☆50Updated last year
- Parse Microsoft shim databases☆30Updated 7 months ago
- PE Import Hash Generator☆81Updated 8 years ago
- Extract common Windows artifacts from source images and VSCs☆65Updated 4 years ago
- mod to myaut2exe decompiler☆16Updated 8 years ago
- Command line access to the Registry☆154Updated this week
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆38Updated 2 years ago
- A VBA parser and emulation engine to analyze malicious macros.☆96Updated 3 weeks ago
- A better strings utility!☆138Updated last week