shadowbrokers2017 / shadow-brokers-windows
Some data from the Windows Shadow Brokers Windows dumps
☆8Updated 8 years ago
Alternatives and similar repositories for shadow-brokers-windows:
Users that are interested in shadow-brokers-windows are comparing it to the libraries listed below
- Finds dynamic DNS (like no-ip.org) domains from a given list of domains☆14Updated 9 years ago
- Script created to get all the Hancitor C&C address [OLD]☆8Updated 6 years ago
- Command-line Interface for Binar.ly☆37Updated 8 years ago
- POC for IAT Parsing Payloads☆48Updated 8 years ago
- Frontend for Codex Gigas☆21Updated 8 years ago
- A tool to generate yara signatures from function blocks☆19Updated 10 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 10 years ago
- Carve Windows Prefetch files from arbitrary binary data☆14Updated 7 years ago
- library to decode/parse zeus-like configuration files☆29Updated 7 years ago
- ☆19Updated 6 years ago
- Tool for dropping malware from EK☆40Updated 7 years ago
- Script to parse first load time for Shell Extensions loaded by user. Also enumerates all loaded Shell Extensions that are only installed …☆20Updated 9 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- ☆16Updated 10 years ago
- Volatility Plugins☆21Updated 9 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆49Updated 7 years ago
- Script to extract malicious payload and decoy document from CVE-2015-1641 exploit documents☆23Updated 8 years ago
- Artefacts from various retefe campaigns☆10Updated 6 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆55Updated 7 years ago
- Shared yara rules☆30Updated 11 years ago
- Tools☆13Updated 2 years ago
- Volatility Plugin to scan for shimmed processes in Windows☆10Updated 9 years ago
- zer0m0n driver for cuckoo sandbox☆21Updated 10 years ago
- Identify botnet panels with Ensembled Decision Trees☆18Updated 8 years ago
- officefileinfo is a python script to help analyse the newer Microsoft Office file formats. There are numerous tools for dealing with the …☆16Updated 8 years ago
- Exploit kit analyzer☆21Updated 10 years ago
- Lite version of PDF X-RAY that uses no backend☆36Updated 13 years ago
- ☆68Updated 7 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Updated 8 years ago