The Windows Malware Analysis Reversing Core Tools
☆101Dec 21, 2020Updated 5 years ago
Alternatives and similar repositories for SentinelLabs_RevCore_Tools
Users that are interested in SentinelLabs_RevCore_Tools are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- This repo contains miscellaneous tools to aid in your malware analysis.☆13Mar 2, 2021Updated 5 years ago
- Python based CLI for MalwareBazaar☆39May 17, 2026Updated 3 months ago
- Presentation slides, blogs, and videos of my conference presentations.☆26Jan 31, 2024Updated 2 years ago
- Simple PHP Script to return your true external ip (wan)☆11Mar 7, 2015Updated 11 years ago
- Setup scripts for my Malware Analysis VMs☆261Feb 20, 2022Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 4 years ago
- A simple utility to check the status of and/or disable SMBv1 on Windows system via Cb Response's Live Response functionality.☆15May 28, 2019Updated 7 years ago
- ☆18Mar 26, 2025Updated last year
- ☆23May 23, 2024Updated 2 years ago
- Actionable data for Security Operations☆19Aug 26, 2021Updated 5 years ago
- ETW-Almulahaza is a consumer python-based tool that help you monitor ETW events of the operating system☆13Jun 24, 2022Updated 4 years ago
- Extracting AsyncRAT configuration using CyberChef☆14May 4, 2022Updated 4 years ago
- Unpacking and decryption tools for the Emotet malware☆44Dec 5, 2021Updated 4 years ago
- Surface Analysis System on Cloud☆19Dec 21, 2023Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Automating forensic data extraction, reduction, and overall triage of cold disk and memory images.☆21Mar 12, 2019Updated 7 years ago
- Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysi…☆1,306Jun 1, 2023Updated 3 years ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆93Mar 11, 2026Updated 5 months ago
- Registry timestamp manipulation☆17Feb 26, 2014Updated 12 years ago
- ☆24Jul 7, 2023Updated 3 years ago
- Threat hunting queries, Sigma rules, and detection engineering research based on MITRE ATT&CK techniques.☆42Updated this week
- A threat sighting collects the behavior of a real threats and the observables used during its engagement.☆12Mar 29, 2022Updated 4 years ago
- ☆130Jan 29, 2024Updated 2 years ago
- Threat Hunting tool about Sysmon and graphs☆342May 28, 2023Updated 3 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Forensics triage tool relying on Volatility and Foremost☆25Dec 3, 2023Updated 2 years ago
- Trace ScriptBlock execution for powershell v2☆40Jan 14, 2020Updated 6 years ago
- The MAGIC tool is a wrapper around the Microsoft Graph Python SDK, designed to download incident response-relevant data from M365 environ…☆35Apr 13, 2026Updated 4 months ago
- Source Code for 'Malware Analysis and Detection Engineering' by Abhijit Mohanta and Anoop Saldanha☆131May 15, 2023Updated 3 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Jun 8, 2017Updated 9 years ago
- A repository of my own Sigma detection rules.☆167Nov 25, 2025Updated 9 months ago
- ☆12Jul 15, 2022Updated 4 years ago
- Yet Another Yara Automaton - Automatically curate open source yara rules and run scans☆305Dec 27, 2023Updated 2 years ago
- PowerShell Digital Forensics & Incident Response Scripts.☆809May 26, 2026Updated 3 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analys…☆448Jan 25, 2025Updated last year
- A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering env…☆8,999Jun 23, 2026Updated 2 months ago
- Signatures and IoCs from public Volexity blog posts.☆370Jul 17, 2026Updated last month
- r0ak ("roak") is the Ring 0 Army Knife -- A Command Line Utility To Read/Write/Execute Ring Zero on for Windows 10 Systems☆28Aug 6, 2018Updated 8 years ago
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆17Sep 4, 2021Updated 5 years ago
- Rules shared by the community from 100 Days of YARA 2024☆90Jan 1, 2025Updated last year
- Sources code extracted from malwares for analysis☆41Mar 10, 2023Updated 3 years ago