Incident Response Scripts
☆30Mar 1, 2020Updated 6 years ago
Alternatives and similar repositories for IRScripts
Users that are interested in IRScripts are comparing it to the libraries listed below
Sorting:
- Python tool and library to help analyze files during malware triage and analysis.☆78Jul 2, 2020Updated 5 years ago
- A python script that can be used to scan data within in an IDB using Yara.☆23Sep 4, 2018Updated 7 years ago
- Anything related to Ghidra☆12Apr 22, 2019Updated 6 years ago
- threat language parser☆59Apr 20, 2015Updated 10 years ago
- IDA Pro plugin that rename functions on load, based on functionality☆19Mar 9, 2018Updated 8 years ago
- library to decode/parse zeus-like configuration files☆30Mar 19, 2018Updated 8 years ago
- Some dfir stuff☆31Jan 12, 2022Updated 4 years ago
- random python stuff☆26Jan 7, 2016Updated 10 years ago
- ☆28Aug 31, 2014Updated 11 years ago
- ☆14May 30, 2018Updated 7 years ago
- Community maintained list of most popular HIPS service and process names on a Windows Platform.☆43Jan 7, 2026Updated 2 months ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Mar 26, 2016Updated 9 years ago
- Indices for courses in SANS' Network Security Operations curriculum☆17Feb 5, 2016Updated 10 years ago
- Python scripts to parse scans.io ssl data and ingest into elasticsearch for searching☆33May 14, 2016Updated 9 years ago
- GUI for regripper☆11Mar 19, 2019Updated 7 years ago
- Convert asciinema JSON files to GIF for embedding in Github, Medium, email, Slack and more!☆10Sep 24, 2020Updated 5 years ago
- A script to assist in processing forensic RAM captures for malware triage☆26Feb 4, 2021Updated 5 years ago
- OpenDNS Graph Miner☆45Apr 28, 2017Updated 8 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Sep 18, 2018Updated 7 years ago
- Honeynet Project generic authenticated datafeed protocol☆19Jun 12, 2019Updated 6 years ago
- Email Abuse - A Versatile Software for Email review, analysis and reporting☆21Jul 17, 2015Updated 10 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆44Mar 11, 2016Updated 10 years ago
- ☆519Jan 26, 2021Updated 5 years ago
- An Incident Response tool to extract console command history and screen output buffer☆42Jan 11, 2018Updated 8 years ago
- Binarly SDK v1☆14Dec 18, 2016Updated 9 years ago
- Yaras Random☆24Feb 21, 2019Updated 7 years ago
- Ayaabu is a funny trick that fake the installation of many Antivirus☆12Jul 6, 2016Updated 9 years ago
- A python script that can detect and parse loki-bot (malware) related network traffic. This script can be helpful to DFIR analysts and sec…☆13Dec 31, 2021Updated 4 years ago
- Just another tool to extract Indicator of compromise (ioc) from files☆29Oct 1, 2015Updated 10 years ago
- Metadata Inspection Database Alerting System☆42Jul 26, 2013Updated 12 years ago
- ☆10Feb 18, 2016Updated 10 years ago
- A Binary Ninja plugin that uses bruteforced XFG hashes to recover precise function prototypes☆16Feb 7, 2024Updated 2 years ago
- More Obvious Webmalware Repository☆16Dec 16, 2016Updated 9 years ago
- Python and PowerShell utilities for finding installed browser extensions, plug-ins and add-ons☆25Jun 14, 2016Updated 9 years ago
- ☆17Mar 22, 2018Updated 7 years ago
- Proof-of-concept automated baremetal malware analysis framework.☆14Sep 24, 2015Updated 10 years ago
- My Yara Rules Collection☆52Feb 7, 2016Updated 10 years ago
- Scripts for communication with Bunitu Trojan C&Cs☆19Oct 29, 2015Updated 10 years ago
- Telegram Bot that performs checks of the yararules.com ruleset☆13May 13, 2016Updated 9 years ago