A YARA & Malware Analysis Toolkit written in Rust.
☆118Aug 13, 2026Updated last month
Alternatives and similar repositories for MalChela
Users that are interested in MalChela are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PowerShell toolkit for AMSI/Defender detection-boundary analysis and static malware triage maps byte offsets to detection triggers, plus …☆86Jul 28, 2026Updated last month
- Forensic tool for extracting and analyzing Google DriveFS cached files and metadata.☆22May 9, 2025Updated last year
- Contains compiled binaries of Volatility☆36May 18, 2025Updated last year
- Chrome Logs Events and Protobuf Parser☆40Dec 13, 2022Updated 3 years ago
- Run TTPs, with AI!☆143Feb 23, 2026Updated 7 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.☆346Dec 3, 2025Updated 9 months ago
- Just Another broken Registry Parser (JARP)☆16May 23, 2024Updated 2 years ago
- PPLReaper is a Windows UNSIGNED kernel driver + userland companion tool designed to inspect and manipulate Protected Process Light (PPL) …☆25Mar 4, 2026Updated 6 months ago
- A tool for fetching DFIR and other GitHub tools.☆30Sep 17, 2026Updated last week
- Sh3ller is a lightweight C2 framework in its simplest form.☆33Sep 5, 2025Updated last year
- Windows Forensics Environment Builder☆189Aug 1, 2026Updated last month
- A powerful macOS triage collection tool designed for forensic analysis. It gathers critical system artifacts such as FSEvents, Spotlight,…☆49Oct 24, 2025Updated 11 months ago
- Scripts to for ready-to-use Velociraptor instance deployment in Azure☆14Jun 27, 2023Updated 3 years ago
- Windows forensics Engine☆112Sep 6, 2026Updated 2 weeks ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- PowerShell scripts for running Magnet RESPONSE forensic collection tool in large enterprises.☆36Jan 9, 2025Updated last year
- ☆37Mar 19, 2026Updated 6 months ago
- ☆83Oct 2, 2025Updated 11 months ago
- It’s an OSINT reconnaissance poc powered by Local LLMs (Ollama). You can feed it an email, domain, or IP, and it automatically performs m…☆85Nov 20, 2025Updated 10 months ago
- This repository provides a comprehensive Digital Footprint Checklist to help individuals manage their online presence and enhance privacy…☆18Dec 25, 2024Updated last year
- BitUnlocker is a minimal, interactive Bash script that helps unlock BitLocker volumes and either decrypt them to an image file or mount t…☆15Aug 21, 2025Updated last year
- Automatic/Custom Destinations & LNK (MS-SHLLINK) Browser☆51Aug 16, 2026Updated last month
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆37Jul 11, 2023Updated 3 years ago
- macOS forensic acquisition made simple☆301Jun 2, 2026Updated 3 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- DFIR Timeline Analysis for macOS — SQLite-backed viewer for CSV, TSV, XLSX, EVTX, Plaso, $MFT, and $J files with AI Artifacts, AI Secret …☆369Sep 8, 2026Updated 2 weeks ago
- Windows EVTX log analysis for DFIR — fast parsing, ATT&CK mapping, IOC extraction, and Sentinel anomaly detection. Normal + Juggernaut Mo…☆57Sep 6, 2026Updated 2 weeks ago
- Fork this repo! Do a Pull Request! As many times as you want! Learn the ins and outs of how to contribute to GitHub! Make your mistakes h…☆15Jun 21, 2024Updated 2 years ago
- Automatic, fast parsing of browser artifacts☆17Jan 4, 2025Updated last year
- A GeoIP lookup utility utilizing ipinfo.io services.☆30Aug 30, 2026Updated 3 weeks ago
- Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.☆223Updated this week
- A C# PE loader for x64 and x86 PE files.☆57Mar 9, 2026Updated 6 months ago
- yara detection rules for hunting with the threathunting-keywords project☆166May 11, 2025Updated last year
- A DFIR Incident Response AI bot using local Ollama LLM to derrive automated findings from logs☆18Jan 17, 2026Updated 8 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆22Dec 22, 2020Updated 5 years ago
- shellcode transformation tool for YARA evasion☆62Updated this week
- Rolling Timeline for Incident Recorder.☆14Dec 4, 2023Updated 2 years ago
- IoC Ninja is a Binary Ninja plugin that can improve the QoL of malware analysts.☆17Nov 18, 2025Updated 10 months ago
- Turn a supported list of filetypes (e.g. .docx) into a markdown structured text file. Also optionally defangs indicators and extract text…☆12Sep 18, 2026Updated last week
- ☆15Nov 25, 2021Updated 4 years ago
- Thor Artifacts for Velociraptor☆19Dec 2, 2025Updated 9 months ago