Squiblydoo / debloat
A GUI and CLI tool for removing bloat from executables
☆387Updated 2 months ago
Alternatives and similar repositories for debloat:
Users that are interested in debloat are comparing it to the libraries listed below
- Handbook of windows forensic artifacts across multiple Windows version with interpretation tips and some examples. Work in progress!☆333Updated 7 months ago
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆609Updated 3 weeks ago
- A repository of credential stealer formats☆204Updated this week
- A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analys…☆341Updated 2 months ago
- PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs…☆177Updated 11 months ago
- Different learning materials☆225Updated 2 weeks ago
- Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.☆171Updated this week
- Memory acquisition for Linux that makes sense.☆181Updated last year
- ☆200Updated 5 months ago
- CLI tools for forensic investigation of Windows artifacts☆328Updated 4 months ago
- A PowerShell script that attempts to help malware analysts hide their Windows VirtualBox Windows VM's from malware that may be trying to …☆287Updated last year
- A ProcessMonitor visualization application written in rust.☆177Updated last year
- Segugio allows the execution and tracking of critical steps in the malware detonation process, from clicking on the first stage to extrac…☆146Updated 6 months ago
- ☆158Updated last year
- A list of useful tools for Malware Analysis (will be updated regularly)☆140Updated 6 months ago
- Jupyter Notebooks for the Blue Team☆145Updated last week
- Unprotect is a collaborative platform dedicated to uncovering and documenting malware evasion techniques. We invite you to join us in thi…☆158Updated last month
- ☆216Updated 2 months ago
- Python tool to check rootkits in Windows kernel☆195Updated last month
- WTF are these binaries doing?! A list of benign applications that mimic malicious behavior.☆158Updated last month
- IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&…☆359Updated 2 years ago
- WMI virus, because funny☆273Updated 2 months ago
- Harness the power of Splunk for your investigations☆95Updated 2 weeks ago
- A centralized and enhanced memory analysis platform☆434Updated last month
- ☆488Updated last year
- Parses $MFT from NTFS file systems☆232Updated 2 weeks ago
- Living Off The Land Drivers☆1,140Updated this week
- Nuke It From Orbit - remove AV/EDR with physical access☆257Updated 3 months ago
- Records an executable's network activity into a Full Packet Capture file (.pcap) and much more.☆372Updated 3 weeks ago
- PowerShell script helping Incident Responders discover potential adversary persistence mechanisms.☆315Updated 5 months ago