mkorman90 / VolatilityBot
VolatilityBot – An automated memory analyzer for malware samples and memory dumps
☆263Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for VolatilityBot
- Web interface for the Volatility Memory Forensics Framework☆259Updated 7 years ago
- Python script to decode common encoded PowerShell scripts☆215Updated 6 years ago
- Differential Analysis of Malware in Memory☆209Updated 7 years ago
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆193Updated 7 years ago
- Web App for Volatility framework☆380Updated this week
- Auto Installer Script for Cuckoo Sandbox☆165Updated 6 years ago
- Codex Gigas malware DNA profiling search engine discovers malware patterns and characteristics assisting individuals who are attracted in…☆154Updated 4 years ago
- Allows you to quickly query a Windows machine for RAM artifacts☆218Updated 4 years ago
- ☆273Updated last year
- Reconstruct process trees from event logs☆146Updated 4 years ago
- Query and report user logons relations from MS Windows Security Events☆240Updated 6 years ago
- Autoruns plugin for the Volatility framework☆118Updated 5 years ago
- ☆417Updated last year
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆285Updated 7 years ago
- Pafish Macro is a Macro enabled Office Document to detect malware analysis systems and sandboxes. It uses evasion & detection techniques …☆278Updated 7 years ago
- Malware Repository Framework☆100Updated 6 years ago
- Modified edition of cuckoo☆395Updated 7 years ago
- 16,432 Free Yara rules created by☆380Updated 5 years ago
- snake - a malware storage zoo☆217Updated last year
- CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by lever…☆129Updated 6 years ago
- Automatic Yara Rule Generation☆332Updated 8 years ago
- The Seeker of IOC☆129Updated 4 years ago
- ☆150Updated 5 years ago
- ☆82Updated 8 years ago
- A Yara rule generator for finding related samples and hunting☆157Updated 2 years ago
- A python application designed to remotely dump RAM of a Linux client and create a volatility profile for later analysis on your local hos…☆161Updated 4 years ago
- ☆200Updated last year
- Windows Live Artifacts Acquisition Script☆183Updated 2 years ago