mattulm / sfiles_yara
A collection of YARA signatures that I have found around the web.
☆11Updated 8 years ago
Alternatives and similar repositories for sfiles_yara:
Users that are interested in sfiles_yara are comparing it to the libraries listed below
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Various snippets created during malware analysis☆22Updated 6 years ago
- This script is used for extracting DDE in docx and xlsx☆12Updated 7 years ago
- Tools to enumerate Windows Firewall Hook Drivers on Windows 2000, XP and 2003☆20Updated 10 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 6 years ago
- Yaras Random☆20Updated 6 years ago
- ☆16Updated 10 years ago
- Process HTTP Pcaps With YARA☆102Updated 11 years ago
- Simple DDE object detector☆56Updated 7 years ago
- A Maltego transform for VirusTotal Submitter Information☆34Updated 5 years ago
- ☆19Updated 6 years ago
- Crack your macros like the math pros.☆33Updated 8 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆41Updated 6 years ago
- A python script that can detect and parse loki-bot (malware) related network traffic. This script can be helpful to DFIR analysts and sec…☆13Updated 3 years ago
- Talk given at DerbyCon and RuxCon 2016☆22Updated 8 years ago
- Frontend for Codex Gigas☆21Updated 8 years ago
- Mixing up CVE and MS like a pro☆25Updated 8 years ago
- Parses Java Cache IDX files☆39Updated 7 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 6 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 7 years ago
- A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed☆16Updated 8 years ago
- A sinkhole for collecting and analysing malicious traffic☆17Updated 4 years ago
- Automatically exported from code.google.com/p/malware-lu☆55Updated 5 years ago
- Platform for Browser Exploitation☆34Updated 10 years ago
- Yara intergrated into BurpSuite☆47Updated 8 years ago
- Collection of my Python Scripts☆41Updated 4 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆86Updated 7 years ago
- Malware.lu tools☆63Updated 11 years ago
- Handy scripts to speed up malware analysis☆35Updated last year
- a modified version base on Tracecorn☆20Updated 5 years ago