dfirence / pe-compass
☆14Updated this week
Related projects: ⓘ
- Handy scripts to speed up malware analysis☆35Updated 11 months ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- Plugins for the Viper Framework☆14Updated 4 years ago
- Generate bulk YARA rules from YAML input☆21Updated 4 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆52Updated 6 years ago
- A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed☆16Updated 8 years ago
- A collection of my public YARA signatures for various malware families☆28Updated last month
- A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.☆10Updated 5 years ago
- ☆25Updated last year
- ☆12Updated 6 years ago
- API functions for Malware Research☆35Updated 5 years ago
- Scans through registry hives outputting entropy values for key/values, dumps binary contents to files...we are looking for those "fileles…☆10Updated 5 years ago
- TA505 unpacker Python 2.7☆45Updated 4 years ago
- Trace ScriptBlock execution for powershell v2☆39Updated 4 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆24Updated 3 years ago
- Listen for usb devices and automatically submit all files on device to cuckoo☆12Updated 7 years ago
- ☆47Updated 4 years ago
- ☆13Updated this week
- Presentation materials for talks I've given.☆20Updated 4 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 6 years ago
- Parsing MITRE EDR Evaluation results☆12Updated 5 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆39Updated 6 years ago
- ☆13Updated 8 years ago
- Exporting MISP event attributes to yara rules usable with Thor apt scanner☆22Updated 7 years ago
- A set of tools for collecting forensic information☆24Updated 4 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 3 years ago
- Set of utilities for getting information about Windows Events☆15Updated 6 years ago
- ☆13Updated 3 years ago
- A Maltego transform for VirusTotal Submitter Information☆30Updated 5 years ago
- pure Python binary analysis framework☆21Updated 5 years ago