bad stuffs by bad guys
☆49Jul 28, 2022Updated 3 years ago
Alternatives and similar repositories for HiveV5_keystream_decryptor
Users that are interested in HiveV5_keystream_decryptor are comparing it to the libraries listed below
Sorting:
- Hive v5 file decryption algorithm☆34Nov 28, 2022Updated 3 years ago
- VB Exe Parser is an IDA script written in Python. This script will help you to parse VB program internal structures. It can find: Event, …☆17Oct 8, 2016Updated 9 years ago
- ☆11May 13, 2024Updated last year
- Quick ESXi Log Parser☆29Oct 20, 2025Updated 4 months ago
- CTF writeups☆18Feb 21, 2026Updated last week
- a modified version base on Tracecorn☆20Oct 29, 2019Updated 6 years ago
- Repo with supporting material for the talk titled "Cracking the Beacon: Automating the extraction of implant configurations"☆11Feb 6, 2025Updated last year
- Imphash-like calculation on Golang binaries☆49Jul 2, 2022Updated 3 years ago
- Daily updated malware indicator lists from TR-CERT (USOM), including parsed malicious URLs, IPs, and domains.☆15Updated this week
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆141Nov 19, 2023Updated 2 years ago
- Repository of Yara rules created by the Stratosphere team☆29Jul 8, 2021Updated 4 years ago
- Modified python version of Rolf Rolles' https://github.com/RolfRolles/HexRaysDeob to unflatten Emotet'S Control Flow Flattening☆27May 5, 2022Updated 3 years ago
- ☆381Updated this week
- ☆115Feb 13, 2026Updated 2 weeks ago
- ☆11Jun 12, 2023Updated 2 years ago
- Python Library for ConfigExtractor☆15Updated this week
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆46Jan 2, 2022Updated 4 years ago
- Parsers for .mdf file of Microsoft SQL Server (MSSQL)☆15Mar 28, 2020Updated 5 years ago
- A Multi-Threaded PE Export Collection Utility☆14May 13, 2023Updated 2 years ago
- 010 template for apfs☆26Feb 26, 2021Updated 5 years ago
- NTFS file system specimens☆13Jul 3, 2023Updated 2 years ago
- ☆17Oct 26, 2021Updated 4 years ago
- Qakbot Registry Key Configuration Decryptor☆14Dec 20, 2021Updated 4 years ago
- Documentation and tools to curate Sigma rules for Windows event logs into easier to parse rules.☆16Oct 22, 2025Updated 4 months ago
- ARM 32-bit Raspberry Pi Hacking Hello World example in Kali Linux.☆16Nov 27, 2025Updated 3 months ago
- Tools for macOS Forensic Bootable media☆15May 20, 2020Updated 5 years ago
- ☆27Jul 11, 2022Updated 3 years ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Nov 27, 2020Updated 5 years ago
- File Capability Extractor☆14Jul 12, 2025Updated 7 months ago
- ☆13Oct 29, 2022Updated 3 years ago
- YARA Rule Strings Statistics Calculator and Malware Research Helper☆14Jul 24, 2021Updated 4 years ago
- Stop Windows Defender using the Win32 API☆192Feb 2, 2022Updated 4 years ago
- Python's handling of NaN is....interesting?broken?...this project illustrates the issue☆13Dec 28, 2021Updated 4 years ago
- extract and parse WEVT_TEMPLATEs from PE files☆18Dec 30, 2023Updated 2 years ago
- A C++ Yara Rule Runner☆13Apr 22, 2022Updated 3 years ago
- MalUnpack companion driver☆99Jun 17, 2024Updated last year
- runsc loads 32/64 bit shellcode (depending on how runsc is compiled) in a way that makes it easy to load in a debugger. This code is base…☆38Dec 12, 2022Updated 3 years ago
- Registry Miner☆14Apr 10, 2018Updated 7 years ago
- Emu-strings project - JScript/VBScript automated dropper analysis system☆18Mar 25, 2021Updated 4 years ago