rjhansen / nsrlsvr
☆83Updated 2 years ago
Alternatives and similar repositories for nsrlsvr:
Users that are interested in nsrlsvr are comparing it to the libraries listed below
- Checks with NSRL RDS servers looking for for hash matches☆114Updated 4 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆108Updated 7 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- Script for generating Bro intel files from pdf or html reports☆76Updated 9 years ago
- InvestigationPlaybookSpec☆72Updated 7 years ago
- PowerShell scripts for Hard Drive forensics and parsing Windows Artifacts☆56Updated 4 years ago
- A tool designed for consistent and safe capture of off network web resources.☆37Updated 8 years ago
- A Windows Event Processing Utility☆46Updated 7 years ago
- Evidence Fetcher (efetch) is a web-based file explorer, viewer, and analyzer.☆38Updated 5 years ago
- Example programs used in the automating DFIR series☆63Updated 6 years ago
- CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by lever…☆128Updated 6 years ago
- stoQ Public Plugins☆71Updated 2 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- ☆64Updated 3 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆44Updated 9 years ago
- Various Modules & Scripts for use with Viper Framework☆27Updated 5 years ago
- A set of Maltego transforms for VirusTotal Public API v2.0. This set has the added functionality of caching queries on a daily basis to s…☆81Updated 9 years ago
- Community modules for FAME☆65Updated 2 months ago
- AuditParser☆59Updated 11 years ago
- Python IOC Editor☆62Updated 10 years ago
- Queries to parse sysmon event log file with microsoft logparser☆56Updated 10 years ago
- 1-Click push forensics evidence to the cloud☆142Updated 9 months ago
- Lootbox downloads open directories shared on Twitter.☆35Updated 4 years ago
- threat language parser☆60Updated 10 years ago
- Mystique may be used to discover infection markers that can be used to vaccinate endpoints against malware. It receives as input a malici…☆82Updated 7 years ago
- Docker container for MISP☆96Updated 6 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 11 years ago
- Tools to assist in forensicating docker☆83Updated last month
- Log Examination Tool☆26Updated 8 years ago