elceef / yara-rulzLinks
Collection of generic YARA rules
☆16Updated 4 months ago
Alternatives and similar repositories for yara-rulz
Users that are interested in yara-rulz are comparing it to the libraries listed below
Sorting:
- USB HID driver emulation with PID/VID (0x3bca/0x27bb) of Plenom A/S Busylight Alpha, that is supported by Mimikatz. When mimikatz is exec…☆20Updated 3 years ago
- Modular malware analysis artifact collection and correlation framework☆53Updated last year
- ☆36Updated 2 years ago
- The repository accompanying the Buer Emulation workshop☆23Updated 4 years ago
- Python wrappers for mal_unpack☆37Updated 2 years ago
- ☆33Updated 3 years ago
- ☆12Updated 4 years ago
- Repository for LNK stuff☆31Updated 3 years ago
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆28Updated 2 years ago
- ☆18Updated last year
- Scans a list of raccoon servers from Tria.ge and extracts the config☆15Updated 2 years ago
- Defeating Anti-Debugging Techniques for Malware Analysis☆13Updated 3 years ago
- Specialized tool to dump Position Independent Code.☆22Updated 5 years ago
- ☆23Updated 2 years ago
- ☆27Updated last year
- Emulates the VirusTotal "vt" YARA module for livehunt rule debugging/testing☆24Updated 2 years ago
- Rapidly building a Windows 10 system to use for dynamic malware analysis (sandbox), sending data to Elastic Cloud.☆50Updated 2 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆31Updated 3 years ago
- ☆45Updated 2 years ago
- Create a cool process tree like https://twitter.com/ACEResponder.☆35Updated 2 years ago
- Yara Rules for Modern Malware☆78Updated last year
- powershell script i wrote that can suspend an arbitrary process (with limits)☆22Updated 2 years ago
- General Content☆25Updated 2 weeks ago
- ☆15Updated last year
- Placeholder for my detection repo and misc detection engineering content☆42Updated 2 years ago
- Tools for offensive security of NetBackup infrastructures☆42Updated 2 years ago
- A proof-of-concept re-assembler for reverse VNC traffic.☆24Updated 2 years ago
- MITRE TTPs derived from Conti's leaked playbooks from XSS.IS☆40Updated 4 years ago
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆66Updated 3 years ago
- ☆26Updated 3 years ago