hjunker / ProcessBouncerLinks
ProcessBouncer is a simple but effective tool for blocking malware with a process-based approach. With a little fine-tuning this allows to effectively block most of current ransomware that is out there.
☆25Updated 4 years ago
Alternatives and similar repositories for ProcessBouncer
Users that are interested in ProcessBouncer are comparing it to the libraries listed below
Sorting:
- Windows application aiming to preserve cryptographic information used by ransomware operations. If you suspect a ransomware is running on…☆30Updated 8 years ago
- Pure Honeypots with an automated bash script☆21Updated 4 years ago
- This is a large list of ransomware decryptor from various link. Consist from various type of ransomware. Feel free to contribute.☆17Updated 8 years ago
- Compiles a json dataset using public sources that contains properties to aid in the detection and mitigation of over 1000 variants of ran…☆72Updated 2 years ago
- Notebooks created to attack and secure Active Directory environments☆27Updated 6 years ago
- A Darktrace CLI written in Python☆16Updated 6 years ago
- This repo is dedicated to all my tricks, tweaks and modules for testing and hunting threats. This repo contains multiple directories whic…☆57Updated 8 years ago
- Ransomware Decryptors☆36Updated 3 years ago
- A Passive DNS backend and collector☆33Updated 3 years ago
- A defense tool - detect web shells in local directories via md5sum☆32Updated 6 years ago
- ☆35Updated 4 years ago
- This tool aims at automating the identification of potential service running behind ports identified manually either through manual scan …☆51Updated 5 years ago
- Repository for scripts and tips for "Yara Scan Service"☆20Updated 2 years ago
- Short little AV Test to check Detection Rates☆20Updated 5 years ago
- Collection of scripts that I have used on Red Team engagements☆16Updated 7 years ago
- ☆12Updated 4 years ago
- ☆39Updated 5 years ago
- A DFIR tool to extract cryptocoin addresses and other indicators of compromise from binaries.☆56Updated 2 years ago
- PowerShell version of Fail2Ban☆13Updated 6 years ago
- Gunslinger is used to hunt for Magecart sites using URLScan's API☆31Updated 3 years ago
- Network Forensic Extendable Analysis Tool☆39Updated 3 years ago
- RisingSun: Decoding SUNBURST C2 to identify infected hosts without network telemetry.☆10Updated 5 years ago
- Forensics triage tool relying on Volatility and Foremost☆25Updated 2 years ago
- Docker container for datasploit framework☆25Updated 8 years ago
- HoneyDB Python Module☆14Updated last year
- Welcome to the NCC Group Threat Intelligence Alert repo, here you will find the alerts which we have raised to our customers regarding in…☆24Updated 2 years ago
- This repo exists as a quick and dirty arsenal of methods and scripts to subvert .NET SSL/TLS certificate validation in PowerShell and pre…☆12Updated 9 years ago
- A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.☆10Updated 6 years ago
- Powershell-based Windows Security Auditing Toolbox☆10Updated 8 years ago
- This module installs and configures MISP (Malware Information Sharing Platform)☆13Updated last month