pr0xylife / IcedID
☆34Updated last year
Alternatives and similar repositories for IcedID:
Users that are interested in IcedID are comparing it to the libraries listed below
- IOC Collection 2022☆57Updated last year
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆85Updated 2 years ago
- Placeholder for my detection repo and misc detection engineering content☆43Updated last year
- ☆26Updated 3 years ago
- Yara Rules for Modern Malware☆73Updated 11 months ago
- This repo is where I store my Threat Hunting ideas/content☆86Updated last year
- ☆65Updated 2 years ago
- ☆32Updated 10 months ago
- Linux Baseline and Forensic Triage Tool - BETA☆53Updated 2 years ago
- ShellSweeping the evil.☆52Updated 7 months ago
- Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups☆59Updated 2 years ago
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆94Updated last year
- Notes and IoCs of fresh malware☆57Updated 7 months ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆50Updated 2 months ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆50Updated 10 months ago
- ☆96Updated last month
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆58Updated 2 years ago
- Assist analyst and threat hunters to understand Windows authentication logs and to analyze brutforce scenarios.☆18Updated last year
- Just my findings of malwares☆43Updated 2 years ago
- Hunt for Keywords , Mutex, Windows Event,Registry Keys,Process,Schedule tasks in Windows Machine☆22Updated 2 months ago
- A full analysis report detailing as much as possible of a Malware or a Threat☆26Updated 7 months ago
- Hive v5 file decryption algorithm☆34Updated 2 years ago
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆77Updated 3 years ago
- Quick analysis focusing on most important of a Malware or a Threat☆40Updated last year
- ☆28Updated this week
- CarbonBlack EDR detection rules and response actions☆71Updated 5 months ago
- Contains compiled binaries of Volatility☆33Updated 3 weeks ago
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆50Updated last year
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆27Updated last year
- IOCPARSER.COM is a Fast and Reliable service that enables you to extract IOCs and intelligence from different data sources.☆34Updated 3 years ago