asgoel / Fast-Flux-DetectLinks
A heuristic, python-based detector for fast-flux botnets.
☆13Updated 13 years ago
Alternatives and similar repositories for Fast-Flux-Detect
Users that are interested in Fast-Flux-Detect are comparing it to the libraries listed below
Sorting:
- Static and automated/dynamic malware analysis☆47Updated 10 years ago
- Scripts to detect Fast-Flux and DGA using DNS query responses☆44Updated 8 years ago
- A short and small memory forensics helper.☆52Updated 7 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆48Updated 8 years ago
- Collection of scripts for different malware analysis tasks☆76Updated 6 years ago
- GUI Tool to generate threat intelligence information in various formats☆44Updated 7 years ago
- Ender of Fast-Flux malicious domains.☆27Updated 10 years ago
- Python OpenIOC Editor☆18Updated 9 years ago
- Megatron - A System for Abuse- and Incident Handling☆44Updated 8 years ago
- Rekall Forensics and Incident Response Framework with rVMI extensions☆32Updated 4 years ago
- JoeSandbox-Bro is a simple bro script which extracts files from your internet connection and analyzes them automatically on Joe Sandbox☆45Updated 6 years ago
- ☆29Updated 9 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 7 years ago
- A ready to deploy docker container for a fresh sandbox for on-the-fly malware analysis☆42Updated 8 years ago
- List of scripts used for malware analysis☆15Updated 10 years ago
- DNS Enumeration and Reconnaissance Tool☆36Updated 9 years ago
- r2yara - Module for Yara using radare2 information☆36Updated 2 years ago
- Alienvault Labs Projects Random Stuff☆79Updated 12 years ago
- Collection of Praetorian solutions to CTF challenges☆25Updated 7 years ago
- Normalizer for honeypot data.☆45Updated 10 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Searches for interesting cached DNS entries.☆55Updated 11 years ago
- Scans the internet for open FTP servers looking for common malware bot droppers and grabs them for sampling. Also provides support for up…☆48Updated 8 years ago
- A warehouse for your malware☆133Updated 12 years ago
- ☆13Updated 9 years ago
- A Python malware analysis library.☆50Updated 2 years ago
- Pure Python parser for classic Windows Event Log files (.evt)☆50Updated 2 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆56Updated 8 years ago
- ☆16Updated 10 years ago
- GSAudit at Symantec, ExeAudit at RIM, RECX Binary Assurance for Windows at Recx etc. - core library now WinBinaryAudit☆24Updated 10 years ago