Squiblydoo / debloatLinks
A GUI and CLI tool for removing bloat from executables
☆421Updated 2 months ago
Alternatives and similar repositories for debloat
Users that are interested in debloat are comparing it to the libraries listed below
Sorting:
- Memory acquisition for Linux that makes sense.☆206Updated last year
- A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analys…☆390Updated 7 months ago
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆674Updated last month
- Handbook of windows forensic artifacts across multiple Windows version with interpretation tips and some examples. Work in progress!☆386Updated last year
- A PowerShell script that attempts to help malware analysts hide their Windows VirtualBox Windows VM's from malware that may be trying to …☆310Updated 2 months ago
- A repository of credential stealer formats☆226Updated 3 months ago
- Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.☆195Updated last week
- PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs…☆207Updated last year
- Different learning materials☆228Updated 6 months ago
- A ProcessMonitor visualization application written in rust.☆184Updated 2 years ago
- ☆374Updated this week
- Unprotect is a collaborative platform dedicated to uncovering and documenting malware evasion techniques. We invite you to join us in thi…☆173Updated 5 months ago
- ☆204Updated 10 months ago
- ☆240Updated 3 months ago
- ☆161Updated 2 years ago
- A centralized and enhanced memory analysis platform☆490Updated 2 months ago
- IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&…☆368Updated 2 years ago
- This repository contains sample programs that mimick behavior found in real-world malware. The goal is to provide source code that can be…☆655Updated last year
- Records an executable's network activity into a Full Packet Capture file (.pcap) and much more.☆428Updated 5 months ago
- Repository of Yara Rules☆118Updated this week
- Python tool to check rootkits in Windows kernel☆201Updated 3 weeks ago
- Research notes☆129Updated 9 months ago
- Multi-quarantine extractor☆47Updated 4 months ago
- Living Off The Land Drivers☆1,281Updated 3 weeks ago
- DFIR LABS - A compilation of challenges that aims to provide practice in simple to advanced concepts in the following topics: Digital For…☆353Updated last month
- ☆507Updated last year
- CLI tools for forensic investigation of Windows artifacts☆347Updated last month
- Segugio allows the execution and tracking of critical steps in the malware detonation process, from clicking on the first stage to extrac…☆150Updated 11 months ago
- AssemblyLine 4: File triage and malware analysis☆363Updated last week
- Automated YARA Rule Standardization and Quality Assurance Tool☆241Updated last week