mandiant / VM-PackagesLinks
Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.
☆212Updated this week
Alternatives and similar repositories for VM-Packages
Users that are interested in VM-Packages are comparing it to the libraries listed below
Sorting:
- A ProcessMonitor visualization application written in rust.☆184Updated 2 years ago
- ☆213Updated last month
- Repository of Yara Rules☆138Updated last week
- PowerDecode is a PowerShell-based tool that allows to deobfuscate PowerShell scripts obfuscated across multiple layers. The tool performs…☆228Updated last year
- The Windows Malware Analysis Reversing Core Tools☆97Updated 5 years ago
- Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR☆250Updated 2 months ago
- Memory acquisition for Linux that makes sense.☆218Updated 2 years ago
- Collection of scripts used to deobfuscate GOOTLOADER malware samples.☆77Updated 3 weeks ago
- RegRipper4.0☆80Updated last month
- A C# based tool for analysing malicious OneNote documents☆118Updated 2 years ago
- IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&…☆371Updated 3 years ago
- ☆151Updated 3 months ago
- ☆171Updated 2 years ago
- A collection of tools, scripts and personal research☆154Updated last month
- Jupyter Notebooks for the Blue Team☆145Updated 10 months ago
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆143Updated last month
- 🐍 High-performance, multi-threaded YARA & IOC scanner☆236Updated this week
- Dump quarantined files from Windows Defender☆73Updated 3 years ago
- Rules shared by the community from 100 Days of YARA 2024☆88Updated last year
- ☆194Updated last year
- $MFT directory tree reconstruction & FILE record info☆324Updated last year
- A python script developed to process Windows memory images based on triage type.☆263Updated 2 years ago
- ☆78Updated 3 months ago
- A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub☆86Updated 5 months ago
- A specification and style guide for YARA rules☆65Updated last year
- An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.☆342Updated last month
- ☆227Updated 3 years ago
- MAL-CL (Malicious Command-Line)☆322Updated 3 years ago
- Initial triage of Windows Event logs☆105Updated last year
- ☆250Updated 7 months ago