mandiant / vbScript_deobfuscator
Help deobfuscate VBScript
☆15Updated 2 years ago
Alternatives and similar repositories for vbScript_deobfuscator:
Users that are interested in vbScript_deobfuscator are comparing it to the libraries listed below
- ☆28Updated 5 months ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14Updated 4 years ago
- module for certexfil☆15Updated 2 years ago
- Hash collisions and their exploitations☆9Updated 2 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago
- ☆24Updated 5 years ago
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 4 years ago
- ☆12Updated 3 years ago
- Data from analysis of the custom sample from the chapter "Practical Analysis and Test"☆12Updated 4 years ago
- The repository accompanying the Buer Emulation workshop☆24Updated 3 years ago
- x64 Windows package of the shellcode2exe tool☆14Updated 4 years ago
- Tool to decrypt the configuration of NanoCore and dump all used plugins☆10Updated 4 years ago
- A Canary which fires when uninstalled☆34Updated 4 years ago
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- Generates YARA rules to detect malware using API hashing☆17Updated 4 years ago
- Tricard - Malware Sandbox Fingerprinting☆20Updated last year
- ☆15Updated last year
- Python 3 - Manipulation and conversation with different data type (Bytes operations)☆26Updated 3 years ago
- Extract data of TTD trace file to a minidump☆28Updated last year
- Rapidly building a Windows 10 system to use for dynamic malware analysis (sandbox), sending data to Elastic Cloud.☆48Updated last year
- ☆24Updated 3 years ago
- Defeating Anti-Debugging Techniques for Malware Analysis☆13Updated 2 years ago
- Sources Codes of many Office Malwares☆16Updated 2 years ago
- Proof-of-Concept to evade auditd by tampering via ptrace☆17Updated last year
- Work in Progress repo☆14Updated 6 years ago
- USB HID driver emulation with PID/VID (0x3bca/0x27bb) of Plenom A/S Busylight Alpha, that is supported by Mimikatz. When mimikatz is exec…☆20Updated 2 years ago
- Files related to my presentation at SigSegV2 conference in 2019. You can find related papers on my blog☆13Updated 5 years ago
- Dump Lsass Memory Using a Reflective Dll☆14Updated 3 years ago
- Loading and executing shellcode in C# without PInvoke.☆20Updated 3 years ago
- ☆20Updated 4 years ago