kbandla / pcaps
A collection of pcaps
☆14Updated 9 years ago
Alternatives and similar repositories for pcaps:
Users that are interested in pcaps are comparing it to the libraries listed below
- NSRL BloomFilter, Mandiant BloomFilter, Hyperloglog Malware Data Structure☆15Updated 11 years ago
- Basic file metadata gathering script☆21Updated last week
- Event Log Analysis Tools☆29Updated 8 years ago
- Python OpenIOC Editor☆17Updated 9 years ago
- Exporting MISP event attributes to yara rules usable with Thor apt scanner☆24Updated 8 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Command-line Interface for Binar.ly☆37Updated 8 years ago
- a collection of public yara rules☆26Updated 5 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Download all packet captures from http://malware-traffic-analysis.net/☆20Updated 10 years ago
- Emofishes is a collection of proof-of-concepts that help improve, bypass or detect virtualized execution environments (focusing on the on…☆15Updated 2 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆49Updated 7 years ago
- Remote timing attack exploit against most Zeus/Zbot variants including Citadel, Ice9, Zeus 2.3, KINS/ZeusVM etc..☆24Updated 9 years ago
- Rekall Forensics and Incident Response Framework with rVMI extensions☆33Updated 4 years ago
- Carves EXEs from given data files, using intelligent carving based upon PE headers☆38Updated 7 years ago
- Quick & dirty script to get info on a file from online resources (VirusTotal, Team Cymru, Shadow Server etc.)☆30Updated 10 years ago
- Generate MAEC XML from Ero Carrera's pefile output☆15Updated 8 years ago
- Useful scripts, rules etc. for use with YARA☆27Updated 4 years ago
- A curated list of tools for incident response☆29Updated last year
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆29Updated 4 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 3 years ago
- ☆16Updated 10 years ago
- A collection of Yara rules I have created so far☆16Updated 4 years ago
- Dump and parse embedded certificates from Windows binaries☆11Updated 13 years ago
- This repository regroups the Yara Rules for the Unprotect Project☆25Updated 4 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 10 years ago
- ☆19Updated 6 years ago
- Create Suricata and Snort DNS signatures given a single domain or list of domains in a file.☆18Updated 7 years ago