• Stars
    star
    15
  • Rank 1,371,379 (Top 28 %)
  • Language
    Python
  • Created almost 2 years ago
  • Updated almost 2 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

Python3 script which decrypts files encrypted by flawed Cl0p ELF variant.

More Repositories

1

AlphaGolang

IDApython Scripts for Analyzing Golang Binaries
Python
577
star
2

SentinelLabs_RevCore_Tools

The Windows Malware Analysis Reversing Core Tools
PowerShell
89
star
3

XProtect-Malware-Families

Mapping XProtect's obfuscated malware family names to common industry names.
YARA
82
star
4

aevt_decompile

This is a work-in-progress command line tool for reversing run-only AppleScripts. It will help parse the output of applescript-disassembler.py into something more human-readable.
Objective-C
62
star
5

S1QL-Queries

52
star
6

macos-ttps-yara

A ruleset to find potentially malicious code in macOS malware samples
YARA
39
star
7

Memloader

Memory Loader Open Source Project by Sentinel-Labs.
C++
20
star
8

PowerTrick

This is a repository for the public blog with Labs indicators of compromise and code
PowerShell
18
star
9

log4j_response

Python
15
star
10

TrickBot-Anchor

This is a repository for the public blog with Labs indicators of compromise.
10
star
11

aeon

Repository containing Aeon Timeline templates and example projects
7
star
12

SolarWinds_Countermeasures

This tool is designed to identify processes, services, and drivers that SUNBURST attempts to identify on the victim's machine.
C#
5
star
13

TrickBot-Deobfuscator

Code and data related to TrickBot-Deobfuscator blog
Python
4
star
14

Gamaredon-APT

This is a collection of relevant indicators of compromise for the main blog.
4
star
15

Yara

Public SentinelLabs Yara Rules
YARA
3
star
16

Shadowpad

Technical Indicators for SentinelLabs ShadowPad research
2
star
17

IOCs

A Collection of IOC's
2
star
18

aoqin_dragon

Python
2
star
19

meteor-express

Hashes and Yara hunting rules for MeteorExpress Wiper
YARA
1
star
20

Crypt1_IOCs

Massive unpacking of CryptOne samples
1
star