decalage2 / oletoolsLinks
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
☆3,225Updated 5 months ago
Alternatives and similar repositories for oletools
Users that are interested in oletools are comparing it to the libraries listed below
Sorting:
- Please no pull requests for this repository. Thanks!☆2,347Updated 2 weeks ago
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆3,780Updated last week
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆2,027Updated last week
- A VBA parser and emulation engine to analyze malicious macros.☆1,114Updated last year
- YARA signature and IOC database for my scanners and tools☆2,793Updated 2 weeks ago
- yarGen is a generator for YARA rules☆1,741Updated last month
- Loki - Simple IOC and YARA Scanner☆3,678Updated 3 weeks ago
- Volatility 3.0 development☆3,662Updated last week
- Repository of yara rules☆4,580Updated last year
- Investigate malicious Windows logon by visualizing and analyzing Windows event log☆3,009Updated last month
- A curated list of awesome YARA rules, tools, and people.☆4,076Updated 7 months ago
- Malware Configuration And Payload Extraction☆2,801Updated this week
- Mimikatz implementation in pure Python☆3,173Updated last week
- A toolset to make a system look as if it was the victim of an APT attack☆2,678Updated last month
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,364Updated last month
- A list of cyber-chef recipes and curated links☆2,149Updated last year
- Digging Deeper....☆3,580Updated this week
- Powerful Python tool to analyze PDF documents☆1,402Updated last year
- Chepy is a python lib/cli equivalent of the awesome CyberChef tool.☆1,020Updated 2 weeks ago
- Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Po…☆3,461Updated 2 weeks ago
- A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering env…☆7,990Updated 2 months ago
- Utilities for Sysmon☆1,560Updated last month
- Windows Events Attack Samples☆2,450Updated 2 years ago
- Super timeline all the things☆1,957Updated 3 weeks ago
- Noriben - Portable, Simple, Malware Analysis Sandbox☆1,201Updated 3 months ago
- Indicators of Compromises (IOC) of our various investigations☆1,874Updated 3 weeks ago
- An advanced memory forensics framework☆7,879Updated 6 months ago
- Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks,…☆2,266Updated 2 weeks ago
- macro_pack is a tool by @EmericNasi used to automatize obfuscation and generation of Office documents, VB scripts, shortcuts, and other f…☆2,289Updated last year
- PowerShell Obfuscator☆4,130Updated 2 years ago