robomotic / pemeta
Simple tool to extract icons from a pe file and other useful information
☆11Updated 6 years ago
Alternatives and similar repositories for pemeta:
Users that are interested in pemeta are comparing it to the libraries listed below
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 3 years ago
- ☆13Updated 4 years ago
- ActiveMime File Format Documentation☆17Updated 3 years ago
- ☆11Updated 4 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 7 years ago
- Generates YARA rules to detect malware using API hashing☆17Updated 4 years ago
- Plugins for the Viper Framework☆14Updated 5 years ago
- Steezy - Ghetto Yara Generation☆15Updated 2 years ago
- ☆23Updated 4 years ago
- Speaking materials from conferences I've given☆9Updated 2 years ago
- Various snippets created during malware analysis☆22Updated 6 years ago
- ☆22Updated 4 years ago
- Presentation materials for talks I've given.☆20Updated 5 years ago
- ☆12Updated 3 years ago
- This repository contains various files linked to Operation Shadowhammer as it was originally discovered by Kaspersky Team.☆12Updated 6 years ago
- The mission of Black Lotus Labs is to leverage our network visibility to both help protect customers and keep the internet clean.☆12Updated 3 years ago
- The Multiplatform Linux Sandbox☆15Updated last year
- ☆23Updated 11 months ago
- Generate YARA rules for OOXML documents.☆38Updated last year
- AMSI detection PoC☆31Updated 4 years ago
- Handy scripts to speed up malware analysis☆35Updated last year
- Tricard - Malware Sandbox Fingerprinting☆20Updated last year
- Pcaps for PeddleCheap and implant communication + script for interpreting and decrypting pcaps.☆15Updated 7 years ago
- Yaras Random☆20Updated 6 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago
- Python emulator for Excel XLM macros.☆18Updated 4 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆31Updated 4 years ago
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 4 years ago
- A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed☆16Updated 8 years ago
- open source malware analysis and research notes dump☆26Updated last year