pwnagentsmith / IR_Tool
Script for Forensic on Linux
☆50Updated 9 years ago
Alternatives and similar repositories for IR_Tool:
Users that are interested in IR_Tool are comparing it to the libraries listed below
- A python script used to parse the SAM registry hive.☆72Updated 7 years ago
- a Malware/Threat Analyst Desktop☆89Updated 9 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 4 years ago
- Credential Phish Analysis and Automation☆96Updated 6 years ago
- Harbinger Threat Intelligence☆83Updated 9 years ago
- A warehouse for your malware☆134Updated 11 years ago
- Mass static malware analysis tool☆95Updated 3 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 3 years ago
- Some IR notes☆73Updated 8 years ago
- BTG's purpose is to make fast and efficient search on IOC☆70Updated 6 years ago
- Cyber Intel Management☆48Updated 7 years ago
- A set of Maltego transforms for VirusTotal Public API v2.0. This set has the added functionality of caching queries on a daily basis to s…☆81Updated 9 years ago
- Incident Response Scripts☆30Updated 5 years ago
- ThreatTracker is a Python script designed to monitor and generate alerts on given sets of indicators of compromise (IOCs) indexed by a se…☆68Updated 10 years ago
- A dumb set of scripts for building a cuckoo rig☆61Updated 8 years ago
- Kirjuri is a web application for managing cases and physical forensic evidence items.☆106Updated 3 years ago
- Some dfir stuff☆31Updated 3 years ago
- Log Examination Tool☆26Updated 8 years ago
- Clustering NMAP XML results to help make sense of large scan results.☆33Updated 2 years ago
- AuditParser☆59Updated 11 years ago
- (Unofficial) Python API for https://malwr.com/☆62Updated 8 years ago
- Python IOC Editor☆62Updated 10 years ago
- Transforms for the AlienVault OTX service☆39Updated 8 years ago
- Mystique may be used to discover infection markers that can be used to vaccinate endpoints against malware. It receives as input a malici…☆82Updated 7 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- Various Modules & Scripts for use with Viper Framework☆27Updated 5 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆108Updated 7 years ago
- Threat Analysis, Reconnaissance, and Data Intelligence System☆125Updated 9 years ago
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆44Updated 8 years ago
- Manage VT Alerts☆62Updated 8 years ago