adm1nPanda / Usb-AnalyzerLinks
Listen for usb devices and automatically submit all files on device to cuckoo
☆13Updated 8 years ago
Alternatives and similar repositories for Usb-Analyzer
Users that are interested in Usb-Analyzer are comparing it to the libraries listed below
Sorting:
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 7 years ago
- An Incident Response tool that visualizes historic process execution evidence (based on Event ID 4688 - Process Creation Event) in a tree…☆60Updated 8 years ago
- Community modules for FAME☆66Updated last month
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 7 years ago
- Extract common Windows artifacts from source images and VSCs☆64Updated 4 years ago
- ☆136Updated 7 years ago
- Reconstruct process trees from event logs☆147Updated 5 years ago
- Python IOC Editor☆65Updated 10 years ago
- Lazy Office Analyzer☆121Updated 8 years ago
- PowerShell No Agent Hunting☆111Updated 7 years ago
- Automated install scripts for Cuckoo sandbox☆38Updated 8 years ago
- ☆82Updated 9 years ago
- Repository of yara rules☆60Updated 3 years ago
- Event Log Analysis Tools☆31Updated 9 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆88Updated 8 years ago
- A collection of infosec related scripts and information.☆53Updated last year
- Python script for extracting USB information from Windows registry hives☆128Updated 6 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 5 years ago
- PE Import Hash Generator☆79Updated 8 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆25Updated 2 years ago
- Malware Repository Framework☆99Updated 7 years ago
- Python script to decode common encoded PowerShell scripts☆217Updated 7 years ago
- Mystique may be used to discover infection markers that can be used to vaccinate endpoints against malware. It receives as input a malici…☆82Updated 8 years ago
- Yet another registry parser☆138Updated 3 years ago
- Process HTTP Pcaps With YARA☆108Updated 12 years ago
- threadmap plugin for Volatility Foundation☆27Updated 4 years ago
- Various scripts for different malware families☆106Updated 4 years ago
- A collection of scripts to initialize a windows VM to run all the malwares!☆107Updated 5 years ago
- threat-intelligence.eu website and repository of information about open standards, documents, methodologies and processes in threat intel…☆49Updated 3 months ago
- Win32 utility for auditing TCP connections☆56Updated 5 years ago