dr4k0nia / Greenline
Unpacker and Config Extractor for managed Redline Stealer payloads
☆40Updated 2 years ago
Alternatives and similar repositories for Greenline:
Users that are interested in Greenline are comparing it to the libraries listed below
- Collection of source code for Polymorphic, Metamorphic, and Permutation Engines used in Malware☆26Updated 5 years ago
- ☆68Updated last year
- A Bumblebee-inspired Crypter☆80Updated 2 years ago
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆43Updated last year
- Invoke-DetectItEasy is a wrapper for excelent tool called Detect-It-Easy. This PS module is very useful for Threat Hunting and Forensics.☆25Updated 3 years ago
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆33Updated last year
- a small wiper malware programmed in c#☆50Updated 2 years ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆115Updated last year
- ☆36Updated 2 years ago
- Python wrappers for mal_unpack☆35Updated last year
- Configuration Extractor for BlackCat Ransomware☆30Updated 2 years ago
- Configuration Extractors for Malware☆91Updated 3 weeks ago
- Repo containing my public talks☆23Updated last year
- A robust, multiprocessing-capable, multi-family RAT config parser/config extractor for AsyncRAT, DcRAT, VenomRAT, QuasarRAT, XWorm, Xeno …☆42Updated last week
- A collection of my yara rules☆35Updated last year
- Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE☆65Updated last year
- Detect API Hooks☆73Updated 2 years ago
- ☆28Updated 2 years ago
- IDA Python scripts☆30Updated last year
- user-mode Rootkit☆103Updated 2 years ago
- IDA Pro plugin to aid with the analysis of native IIS modules☆17Updated 6 months ago
- Get-UnJlaive is tool which is able to reconstruct Jlaive (.NET Antivirus Evasion Tool (Exe2Bat)) to original Assembly and stub Assembly.☆22Updated 2 years ago
- Bypass Malware Time Delays☆99Updated 2 years ago
- This repository contains an IDA processor for loading and disassembling compiled yara rules.☆34Updated last month
- Malware AV evasion via disable Windows Defender (Registry). C++☆35Updated 2 years ago
- ☆25Updated 2 months ago
- General malware analysis stuff☆36Updated 5 months ago
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆115Updated 7 months ago
- A feed of malware samples curated from threat intelligence sources.☆25Updated last year
- Small visualizator for PE files☆67Updated last year