karttoon / binsequencer
BinSequencer is a script designed to find a common pattern of bytes within a set of samples and generate a YARA rule from the identified pattern.
☆72Updated 2 years ago
Related projects: ⓘ
- A taxonomy and dictionary of malware behaviors.☆42Updated 5 years ago
- Various Yara signatures (possibly to be included in a release later).☆83Updated 5 years ago
- A Yara rule generator for finding related samples and hunting☆155Updated 2 years ago
- Handy scripts to speed up malware analysis☆35Updated 11 months ago
- Transfer EIP control to shellcode during malware analysis investigation☆73Updated 9 years ago
- a modified version base on Tracecorn☆20Updated 4 years ago
- TA505 unpacker Python 2.7☆45Updated 4 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆36Updated last year
- ☆134Updated 5 years ago
- Ursnif beacon decryptor☆27Updated last year
- A tool for de-obfuscating PowerShell scripts☆65Updated 5 years ago
- Lazy Office Analyzer☆118Updated 7 years ago
- YARA rules for use with ProcFilter☆83Updated 7 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 6 years ago
- ☆51Updated 6 years ago
- ☆41Updated 6 years ago
- Create an entire YARA rule via Python? Whhhhhhaatttt?☆70Updated 5 years ago
- ☆95Updated 3 years ago
- Telsy CTI Research Team☆57Updated 3 years ago
- Hollowfind is a Volatility plugin to detect different types of process hollowing techniques used in the wild to bypass, confuse, deflect …☆128Updated last year
- PE Import Hash Generator☆72Updated 7 years ago
- Smart DLL execution for malware analysis in sandbox systems☆141Updated 9 years ago
- ☆82Updated 8 years ago
- mod to myaut2exe decompiler☆13Updated 7 years ago
- ☆80Updated 4 years ago
- Various capabilities for static malware analysis.☆75Updated 2 weeks ago
- ☆25Updated last year
- Static based decoders for malware samples☆93Updated 4 years ago
- I wanted to call this repo "Nuclear Football Codes". I was outvoted..☆68Updated 2 years ago
- Pure Python parser for Application Compatibility Shim Databases (.sdb files)☆104Updated 3 years ago