Squiblydoo / debloatLinks
A GUI and CLI tool for removing bloat from executables
☆408Updated last week
Alternatives and similar repositories for debloat
Users that are interested in debloat are comparing it to the libraries listed below
Sorting:
- Handbook of windows forensic artifacts across multiple Windows version with interpretation tips and some examples. Work in progress!☆364Updated 11 months ago
- A repository of credential stealer formats☆221Updated last month
- Memory acquisition for Linux that makes sense.☆199Updated last year
- A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analys…☆369Updated 5 months ago
- Different learning materials☆227Updated 4 months ago
- A PowerShell script that attempts to help malware analysts hide their Windows VirtualBox Windows VM's from malware that may be trying to …☆300Updated last week
- A ProcessMonitor visualization application written in rust.☆181Updated last year
- PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs…☆195Updated last year
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆649Updated 3 weeks ago
- A centralized and enhanced memory analysis platform☆468Updated last month
- Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.☆187Updated last week
- IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&…☆368Updated 2 years ago
- ☆161Updated last year
- ☆369Updated this week
- Repository of Yara Rules☆112Updated 3 months ago
- Python tool to check rootkits in Windows kernel☆197Updated 4 months ago
- CLI tools for forensic investigation of Windows artifacts☆344Updated 8 months ago
- DFIR LABS - A compilation of challenges that aims to provide practice in simple to advanced concepts in the following topics: Digital For…☆273Updated last month
- ☆203Updated 8 months ago
- Records an executable's network activity into a Full Packet Capture file (.pcap) and much more.☆387Updated 3 months ago
- Unprotect is a collaborative platform dedicated to uncovering and documenting malware evasion techniques. We invite you to join us in thi…☆165Updated 3 months ago
- ☆499Updated last year
- ☆234Updated last month
- Nuke It From Orbit - remove AV/EDR with physical access☆261Updated 7 months ago
- This repository contains indicators of compromise (IOCs) of our various investigations.☆269Updated last week
- Multi-quarantine extractor☆47Updated 2 months ago
- Gets updates from various clearnet domains and ransomware threat actor domains☆398Updated last year
- This repository contains sample programs that mimick behavior found in real-world malware. The goal is to provide source code that can be…☆648Updated last year
- Segugio allows the execution and tracking of critical steps in the malware detonation process, from clicking on the first stage to extrac…☆151Updated 9 months ago
- Living Off The Land Drivers☆1,222Updated last week