certtools / malware_name_mappingLinks
A mapping of used malware names to commonly known family names
☆62Updated 2 years ago
Alternatives and similar repositories for malware_name_mapping
Users that are interested in malware_name_mapping are comparing it to the libraries listed below
Sorting:
- Repository containing IOCs, CSV and MISP JSON from our blogs☆83Updated 4 years ago
- Web based Manager for Yara Rules☆58Updated 5 years ago
- A Yara rule generator for finding related samples and hunting☆162Updated 3 years ago
- Sample staging & detonation utility to be used in combination with Cuckoo Sandbox.☆85Updated 2 years ago
- A taxonomy and dictionary of malware behaviors.☆43Updated 6 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆103Updated 6 months ago
- Community modules for FAME☆65Updated last month
- YARA rules for use with ProcFilter☆90Updated 8 years ago
- This script scans the files extracted by Zeek with YARA rules located on the rules folder on a Linux based Zeek sensor, if there is a mat…☆62Updated 2 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 7 years ago
- Validates yara rules and tries to repair the broken ones.☆41Updated 5 years ago
- A collection of my public YARA signatures for various malware families☆30Updated last year
- Proofpoint - Emerging Threats - Threat Research tools + publicly shared intel and documentation☆82Updated last week
- Python IOC Editor☆65Updated 10 years ago
- Exporting MISP event attributes to yara rules usable with Thor apt scanner☆24Updated 8 years ago
- PE Import Hash Generator☆79Updated 8 years ago
- Definition, description and relationship types of MISP objects☆105Updated 2 weeks ago
- An ICAP Server with yara scanner for URL and content.☆58Updated last year
- Yara rules for detecting malware☆23Updated 4 months ago
- Create an entire YARA rule via Python? Whhhhhhaatttt?☆73Updated 7 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Updated 2 years ago
- An Incident Response tool that visualizes historic process execution evidence (based on Event ID 4688 - Process Creation Event) in a tree…☆60Updated 8 years ago
- Ursnif beacon decryptor☆27Updated 2 years ago
- BinSequencer is a script designed to find a common pattern of bytes within a set of samples and generate a YARA rule from the identified…☆81Updated 4 years ago
- A YARA Rule Performance Measurement Tool☆61Updated last year
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated 2 years ago
- Malware Sinkhole List in various formats☆103Updated 3 years ago
- ☆34Updated 5 years ago
- ☆37Updated 9 years ago
- Application for STIX v2.0 objects management and analysis☆27Updated 8 years ago