dwmetz / MalChela
A YARA & Malware Analysis Toolkit written in Rust.
☆19Updated last week
Alternatives and similar repositories for MalChela:
Users that are interested in MalChela are comparing it to the libraries listed below
- Contains compiled binaries of Volatility☆33Updated 2 months ago
- Quick ESXi Log Parser☆17Updated 2 months ago
- ☆19Updated 2 months ago
- Tools and scripts to deploy and manage OpenRelik instances☆13Updated last month
- ☆21Updated 2 years ago
- ☆20Updated 2 weeks ago
- An experimental script to perform bulk parsing of arbitrary file features with YARA and console logging.☆21Updated 2 years ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆32Updated 4 months ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆31Updated 2 months ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆50Updated 11 months ago
- Scripts to for ready-to-use Velociraptor instance deployment in Azure☆13Updated last year
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆51Updated 3 months ago
- Linux Baseline and Forensic Triage Tool - BETA☆54Updated 2 years ago
- C2 Active Scanner☆55Updated 9 months ago
- Detection rule validation☆41Updated last year
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆27Updated last year
- macOS Artifacts☆28Updated 3 weeks ago
- Yara Rules for Modern Malware☆74Updated last year
- Logbook for Digital Forensics and Incident Response☆50Updated 8 months ago
- Winterfell hunt is a python script to perform auto threat hunting for malicious activities in windows OS based on collected data by winte…☆15Updated 4 years ago
- Placeholder for my detection repo and misc detection engineering content☆43Updated last year
- ☆14Updated 2 years ago
- A proof-of-concept re-assembler for reverse VNC traffic.☆25Updated last year
- A public repository of MITRE ATT&ACK TTP mappings by BushidoUK for OSINT reports that lack a section breaking down the TTPs.☆23Updated last week
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆61Updated 3 months ago
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆68Updated last year
- An exercise to practice deobfuscating PowerShell Scripts.☆28Updated 2 years ago
- Simple Script to Help You Find All Files Has Been Modified, Accessed, and Created In A Range Time.☆27Updated 2 years ago
- A full analysis report detailing as much as possible of a Malware or a Threat☆27Updated 9 months ago
- Remote access and Antivirus Logging Database☆42Updated 11 months ago