herosi / triage-collector
☆21Updated last month
Related projects ⓘ
Alternatives and complementary repositories for triage-collector
- ☆34Updated last year
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆56Updated last year
- USN Journal full path builder☆36Updated 2 months ago
- Assist analyst and threat hunters to understand Windows authentication logs and to analyze brutforce scenarios.☆18Updated last year
- ☆31Updated 2 years ago
- A repository containing the research output from my GCFE Gold Paper which compared Windows 10 and Windows 11.☆25Updated 2 years ago
- Just Another broken Registry Parser (JARP)☆16Updated 6 months ago
- Yara Rules for Modern Malware☆67Updated 8 months ago
- Imphash-like calculation on Golang binaries☆47Updated 2 years ago
- ShellSweeping the evil.☆52Updated 5 months ago
- Sample evtx files to use for testing hayabusa detection rules☆44Updated 2 weeks ago
- Surface Analysis System on Cloud☆19Updated 11 months ago
- Modular malware analysis artifact collection and correlation framework☆53Updated 7 months ago
- Simple PowerShell script to enable process scanning with Yara.☆90Updated 2 years ago
- Windows file metadata / forensic tool.☆15Updated 2 months ago
- ☆14Updated last year
- A set of tools for collecting forensic information☆26Updated 4 years ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 2 years ago
- ☆19Updated 2 months ago
- Generate YARA rules for OOXML documents.☆37Updated last year
- ESXi Cyber Security Incident Response Script☆20Updated 2 months ago
- Browse Windows Prefetch versions: 17,23,26,30v1/2 & some of SuperFetch .7db/.db's☆40Updated 9 months ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆68Updated last year
- ☆19Updated last year
- Collection of Malware Lures☆23Updated 3 years ago
- Winterfell hunt is a python script to perform auto threat hunting for malicious activities in windows OS based on collected data by winte…☆14Updated 4 years ago
- ☆15Updated 3 years ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆49Updated 7 months ago
- Malformed Access Log to CSV - Convert Web Server Access Logs to CSV☆15Updated 2 months ago
- Links to malware-related YARA rules☆14Updated 2 years ago