sketchymoose / TotalRecall
Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to find badness.
☆49Updated 7 years ago
Alternatives and similar repositories for TotalRecall:
Users that are interested in TotalRecall are comparing it to the libraries listed below
- Volatility Plugins☆21Updated 9 years ago
- A short and small memory forensics helper.☆52Updated 7 years ago
- ☆16Updated 10 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 8 years ago
- Automation for VirusTotal☆31Updated 8 years ago
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆44Updated 8 years ago
- Command-line Interface for Binar.ly☆37Updated 8 years ago
- a collection of public yara rules☆26Updated 5 years ago
- Frontend for Codex Gigas☆21Updated 8 years ago
- onigiri - remote malware triage script☆24Updated 9 years ago
- CRITs IOC Visualization in Maltego☆28Updated 10 years ago
- Manage VT Alerts☆62Updated 8 years ago
- Shared yara rules☆30Updated 11 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- ☆22Updated 7 years ago
- A warehouse for your malware☆134Updated 11 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 10 years ago
- ☆19Updated 6 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 4 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Scan web server for known webshell names and responses☆50Updated 8 years ago
- Basic Maltego Transforms for looking up SSL certs and IP info from censys.io☆41Updated 8 years ago
- Mitre chopshop network decoder framework☆30Updated 8 years ago
- Some IR notes☆73Updated 8 years ago
- A REST API server for yara event notifications. Mapping file hashes to yara signatures in Elasticsearch for easy hash lookup or finding h…☆19Updated 9 years ago
- Some dfir stuff☆31Updated 3 years ago
- Yara intergrated into BurpSuite☆46Updated 8 years ago
- Static and automated/dynamic malware analysis☆47Updated 9 years ago