Scripts and rulesets for analysing the Winnti malware
☆24Jul 24, 2019Updated 6 years ago
Alternatives and similar repositories for 2019-winnti-analyse
Users that are interested in 2019-winnti-analyse are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A project in Golang that will create prefix-based magic MD5 hashes for type juggling.☆21Jul 29, 2018Updated 7 years ago
- QEMU with rVMI extensions☆25Jul 25, 2017Updated 8 years ago
- a shared short domain for XSS and other hacks☆32Mar 3, 2022Updated 4 years ago
- pocket guide for core threat hunting concepts☆23May 6, 2020Updated 6 years ago
- Imphash-like calculation on Golang binaries☆50Jul 2, 2022Updated 3 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.☆10Sep 17, 2019Updated 6 years ago
- Elasticsearch/Kibana environment and log data for Sigma workshop☆27Dec 20, 2019Updated 6 years ago
- Attack Tool Timing and Reporting - Structured Attack Logging Format☆22Nov 4, 2022Updated 3 years ago
- A simple guideline for MacOs Security.☆13Jun 15, 2022Updated 4 years ago
- Socks5 proxy server by golang☆11Oct 10, 2019Updated 6 years ago
- ☆12Nov 3, 2020Updated 5 years ago
- ☆15Oct 25, 2022Updated 3 years ago
- Carving tool based in Radare2 & Yara☆16Oct 30, 2018Updated 7 years ago
- Trace ScriptBlock execution for powershell v2☆40Jan 14, 2020Updated 6 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Basic command line, text-based, shellcode debugger.☆92Jul 2, 2017Updated 8 years ago
- ☆136Jan 24, 2019Updated 7 years ago
- Thor Artifacts for Velociraptor☆19Dec 2, 2025Updated 6 months ago
- dawg the hallway monitor - monitor operating system changes and analyze introduced attack surface when installing software☆55Nov 14, 2019Updated 6 years ago
- Binary String Toolkit (BST). Quickly and easily convert binary strings for all your exploit development needs.☆22Jul 27, 2018Updated 7 years ago
- Multicore EVTX to Elasticsearch ingestor for incident responders.☆14May 12, 2021Updated 5 years ago
- Encase Script to parse harddrive for MFT data☆16Jun 17, 2016Updated 10 years ago
- Threat Alert Logic Repository☆93Feb 7, 2019Updated 7 years ago
- Simple shellcode decoder using unicorn-engine☆100Oct 17, 2015Updated 10 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Various short scripts and tools used for Digital Forensics☆14Apr 13, 2025Updated last year
- NSRL BloomFilter, Mandiant BloomFilter, Hyperloglog Malware Data Structure☆15Mar 14, 2014Updated 12 years ago
- ☆12Sep 4, 2013Updated 12 years ago
- These FLARE-VM configuration files are designed to be help setup a purpose-built installation, remove unnecessary packages to help stream…☆16Apr 10, 2024Updated 2 years ago
- PowerShell tool to triage systems☆12May 17, 2023Updated 3 years ago
- Historical Observations of Actionable Reputation Data☆13Jun 26, 2018Updated 7 years ago
- Static unpacker for FinSpy VM☆103Jul 11, 2021Updated 4 years ago
- Various public documents, whitepapers and articles about APT campaigns☆55Apr 1, 2016Updated 10 years ago
- Visual Basic GUI: A Tool to Inject Keystrokes on a SSH Client via an X11 Forwarded Session☆63Mar 13, 2018Updated 8 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- GCNotify is an Outlook addin for quickly forwarding mail as attachment to a pre-defined e-mail address.☆12Jan 17, 2023Updated 3 years ago
- Windows Application Attack Surface Analyzer☆25Feb 22, 2024Updated 2 years ago
- Upload a PDF to the reMarkable over SSH, useful for large PDFs that cause the web interface to hang or timeout☆15Mar 17, 2021Updated 5 years ago
- ☆23Oct 9, 2024Updated last year
- bridge for Philips Hue to MQTT, written in Go☆11Jul 18, 2023Updated 2 years ago
- A browser extension that seamlessly integrates your yara match notifications into VirusTotal Intelligence.☆17Feb 8, 2015Updated 11 years ago
- Splunk Technology Add-On (TA) for collecting ETW events from Windows systems☆16Dec 8, 2022Updated 3 years ago