dr4k0nia / Greenline
Unpacker and Config Extractor for managed Redline Stealer payloads
☆41Updated 2 years ago
Alternatives and similar repositories for Greenline:
Users that are interested in Greenline are comparing it to the libraries listed below
- Invoke-DetectItEasy is a wrapper for excelent tool called Detect-It-Easy. This PS module is very useful for Threat Hunting and Forensics.☆25Updated 3 years ago
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆44Updated 2 years ago
- Collection of my own detection rules☆18Updated last year
- A Bumblebee-inspired Crypter☆80Updated 2 years ago
- ☆73Updated last year
- Python wrappers for mal_unpack☆36Updated last year
- IDA Python scripts☆34Updated last week
- A simple commandline application to automatically decrypt strings from Obfuscator protected binaries☆40Updated 10 months ago
- ☆36Updated last month
- Collection of source code for Polymorphic, Metamorphic, and Permutation Engines used in Malware☆26Updated 5 years ago
- General malware analysis stuff☆36Updated 7 months ago
- Get-UnJlaive is tool which is able to reconstruct Jlaive (.NET Antivirus Evasion Tool (Exe2Bat)) to original Assembly and stub Assembly.☆22Updated 2 years ago
- Malware AV evasion via disable Windows Defender (Registry). C++☆35Updated 2 years ago
- Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE☆65Updated last year
- Easy XOR string encryption for NET based binaries☆138Updated last year
- a small wiper malware programmed in c#☆52Updated 2 years ago
- Configuration Extractor for BlackCat Ransomware☆30Updated 3 years ago
- A collection of my yara rules☆35Updated last year
- Bypass Malware Time Delays☆101Updated 2 years ago
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆33Updated last year
- A feed of malware samples curated from threat intelligence sources.☆25Updated last year
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆114Updated 2 years ago
- Get-PDInvokeImports is tool (PowerShell module) which is able to perform automatic detection of P/Invoke, Dynamic P/Invoke and D/Invoke u…☆54Updated 3 years ago
- Configuration Extractors for Malware☆96Updated last week
- Repo containing my public talks☆23Updated last year
- ☆27Updated 4 months ago
- A collection of small scripts and tools for deobfuscation and malware analysis.☆66Updated 2 years ago
- simple user-mode Rootkit☆103Updated 2 years ago
- MITRE TTPs derived from Conti's leaked playbooks from XSS.IS☆37Updated 3 years ago
- PoC of a UEFI Petya ransomware☆40Updated 2 years ago