matonis / yara_toolsLinks
Create an entire YARA rule via Python? Whhhhhhaatttt?
☆73Updated 6 years ago
Alternatives and similar repositories for yara_tools
Users that are interested in yara_tools are comparing it to the libraries listed below
Sorting:
- A mapping of used malware names to commonly known family names☆62Updated 2 years ago
- Parse YARA rules and operate over them more easily.☆192Updated 8 months ago
- A Yara rule generator for finding related samples and hunting☆159Updated 3 years ago
- A taxonomy and dictionary of malware behaviors.☆43Updated 6 years ago
- Minimal, consistent Python API for building integrations with malware sandboxes.☆140Updated last year
- Community modules for FAME☆65Updated last month
- Django web interface for managing Yara rules☆196Updated 7 years ago
- YARA rules for use with ProcFilter☆88Updated 8 years ago
- Sample staging & detonation utility to be used in combination with Cuckoo Sandbox.☆83Updated last year
- BinSequencer is a script designed to find a common pattern of bytes within a set of samples and generate a YARA rule from the identified…☆78Updated 3 years ago
- Repository containing IOCs, CSV and MISP JSON from our blogs☆81Updated 4 years ago
- Static analysis tools for Microsoft Office Open XML files and documents☆71Updated 8 years ago
- Handy scripts to speed up malware analysis☆35Updated 2 years ago
- VSCode extension for the YARA pattern matching language☆63Updated last year
- Fuzzy Hash calculated from import API of PE files☆90Updated 3 years ago
- Ursnif beacon decryptor☆27Updated 2 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 7 years ago
- A collection of my public YARA signatures for various malware families☆30Updated last year
- PE Import Hash Generator☆79Updated 8 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Updated 2 years ago
- Yara rules for detecting malware☆24Updated last month
- Web based Manager for Yara Rules☆58Updated 5 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆103Updated 3 months ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 7 years ago
- A Python library and command line tools to provide interactive log visualization.☆141Updated 2 years ago
- Python API wrapper for the Joe Sandbox API.☆66Updated last year
- Parse Windows Prefetch files: Supports XP - Windows 10 Prefetch files☆120Updated last year
- Proofpoint - Emerging Threats - Threat Research tools + publicly shared intel and documentation☆80Updated last month
- Validates yara rules and tries to repair the broken ones.☆40Updated 5 years ago
- ☆82Updated 9 years ago