grierforensics / officedissectorLinks
Static analysis tools for Microsoft Office Open XML files and documents
☆70Updated 7 years ago
Alternatives and similar repositories for officedissector
Users that are interested in officedissector are comparing it to the libraries listed below
Sorting:
- Sample staging & detonation utility to be used in combination with Cuckoo Sandbox.☆83Updated last year
- ☆36Updated 8 years ago
- openioc_scan Volatility Framework plugin☆43Updated 9 years ago
- Checks with NSRL RDS servers looking for for hash matches☆114Updated 4 years ago
- Codex Gigas malware DNA profiling search engine discovers malware patterns and characteristics assisting individuals who are attracted in…☆155Updated 5 years ago
- An ICAP Server with yara scanner for URL and content.☆59Updated 6 months ago
- Scripts for dealing with various ek's☆69Updated 8 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago
- A Windows Event Processing Utility☆46Updated 7 years ago
- Command line tool for scanning streams within office documents plus xor db attack☆126Updated last year
- PE Import Hash Generator☆80Updated 7 years ago
- A Yara rule generator for finding related samples and hunting☆160Updated 2 years ago
- A dumb set of scripts for building a cuckoo rig☆61Updated 8 years ago
- ☆82Updated 9 years ago
- My Yara Rules Collection☆52Updated 9 years ago
- Ragpicker is a Plugin based malware crawler with pre-analysis and reporting functionalities. Use this tool if you are testing antivirus p…☆93Updated 9 years ago
- Parse Windows Prefetch files: Supports XP - Windows 10 Prefetch files☆118Updated last year
- Open source Python library for NTFS analysis☆81Updated 7 years ago
- stoQ Public Plugins☆71Updated 2 years ago
- A warehouse for your malware☆134Updated 12 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 3 years ago
- A python script used to parse the SAM registry hive.☆74Updated 7 years ago
- Some IR notes☆73Updated 8 years ago
- Yara rules for malware families seen as part of targeted threats project☆138Updated 8 years ago
- Process HTTP Pcaps With YARA☆103Updated 11 years ago
- A Rekall interactive document for a Memory Analysis workshop/course.☆43Updated 8 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 7 years ago
- ☆19Updated 6 years ago
- Utility to retrieve the Master File Table (MFT) from a live running NTFS volume and send it to a netcat listener.☆41Updated 10 years ago
- Some dfir stuff☆31Updated 3 years ago