sysopfb / open_mal_analysis_notes
open source malware analysis and research notes dump
☆26Updated last year
Related projects ⓘ
Alternatives and complementary repositories for open_mal_analysis_notes
- Data from analysis of the custom sample from the chapter "Practical Analysis and Test"☆12Updated 4 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14Updated 4 years ago
- ☆23Updated 4 years ago
- Scripts, Yara rules and other files developed during malware investigations☆24Updated 2 years ago
- Specialized tool to dump Position Independent Code.☆21Updated 4 years ago
- Generate YARA rules for OOXML documents.☆37Updated last year
- ☆18Updated 4 years ago
- ☆24Updated 3 years ago
- ☆26Updated last year
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Updated last year
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 2 years ago
- Links to malware-related YARA rules☆14Updated 2 years ago
- Tool to decrypt the configuration of NanoCore and dump all used plugins☆11Updated 3 years ago
- ☆15Updated 3 years ago
- ssdeep cluster analysis for malware files☆29Updated 4 years ago
- Generates YARA rules to detect malware using API hashing☆17Updated 3 years ago
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆50Updated 5 years ago
- Rekall Memory Forensic Framework☆29Updated 5 years ago
- ☆20Updated 4 years ago
- A collection of shellcode hashes☆17Updated 6 years ago
- ☆15Updated 3 years ago
- Presentation materials for talks I've given.☆20Updated 5 years ago
- Sources code extracted from malwares for analysis☆36Updated last year
- A PowerShell script to prevent Sysmon from writing its events☆14Updated 4 years ago
- TA505 unpacker Python 2.7☆46Updated 4 years ago
- AMSI detection PoC☆30Updated 4 years ago
- Radare2 Metadata Extraction to Elasticsearch☆21Updated 6 months ago