intezer / ssdeep-windows
☆12Updated 7 years ago
Alternatives and similar repositories for ssdeep-windows:
Users that are interested in ssdeep-windows are comparing it to the libraries listed below
- ☆11Updated 3 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆24Updated 4 years ago
- ☆13Updated 2 years ago
- Telsy CTI Research Team☆57Updated 4 years ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- Handy scripts to speed up malware analysis☆35Updated last year
- A Maltego transform for VirusTotal vHash☆32Updated 5 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 3 years ago
- ActiveMime File Format Documentation☆17Updated 3 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14Updated 4 years ago
- A collection of my public YARA signatures for various malware families☆29Updated 4 months ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Updated last year
- SDBbot Unpacker Python 2.7☆9Updated 4 years ago
- ☆43Updated 6 years ago
- Plugin for x64dbg to generate Yara rules from function basic blocks.☆34Updated 7 years ago
- revised "peHash: A Novel Approach to Fast Malware Clustering"☆21Updated 8 years ago
- TA505 unpacker Python 2.7☆47Updated 4 years ago
- Python command-line tool that uses nearest neighbor search methods for malware similarity analysis☆16Updated 6 years ago
- Trace ScriptBlock execution for powershell v2☆39Updated 5 years ago
- An example for implementation of ssdeep similarity search optimized with elasticsearch☆35Updated 7 years ago
- ida python scripts☆23Updated 6 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 6 years ago
- Generates YARA rules to detect malware using API hashing☆17Updated 3 years ago
- Yaras Random☆20Updated 5 years ago
- VSCode extension for the YARA pattern matching language☆63Updated last year
- ☆23Updated 9 months ago
- Decodes PlugX traffic and encrypted/compressed artifacts☆38Updated 11 years ago
- Capture BAT is a behavioral analysis tool of applications for the Win32 operating system family.☆32Updated 11 years ago
- Ursnif beacon decryptor☆27Updated last year
- It's not just UsnJrnl (USN Journal Records/Change Journal Records) parser.☆23Updated 6 years ago