• Stars
    star
    4
  • Rank 3,304,323 (Top 66 %)
  • Language
    Python
  • Created almost 5 years ago
  • Updated almost 5 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

Code and data related to TrickBot-Deobfuscator blog

More Repositories

1

AlphaGolang

IDApython Scripts for Analyzing Golang Binaries
Python
577
star
2

SentinelLabs_RevCore_Tools

The Windows Malware Analysis Reversing Core Tools
PowerShell
89
star
3

XProtect-Malware-Families

Mapping XProtect's obfuscated malware family names to common industry names.
YARA
82
star
4

aevt_decompile

This is a work-in-progress command line tool for reversing run-only AppleScripts. It will help parse the output of applescript-disassembler.py into something more human-readable.
Objective-C
62
star
5

S1QL-Queries

52
star
6

macos-ttps-yara

A ruleset to find potentially malicious code in macOS malware samples
YARA
39
star
7

Memloader

Memory Loader Open Source Project by Sentinel-Labs.
C++
20
star
8

PowerTrick

This is a repository for the public blog with Labs indicators of compromise and code
PowerShell
18
star
9

log4j_response

Python
15
star
10

Cl0p-ELF-Decryptor

Python3 script which decrypts files encrypted by flawed Cl0p ELF variant.
Python
15
star
11

TrickBot-Anchor

This is a repository for the public blog with Labs indicators of compromise.
10
star
12

aeon

Repository containing Aeon Timeline templates and example projects
7
star
13

SolarWinds_Countermeasures

This tool is designed to identify processes, services, and drivers that SUNBURST attempts to identify on the victim's machine.
C#
5
star
14

Gamaredon-APT

This is a collection of relevant indicators of compromise for the main blog.
4
star
15

Yara

Public SentinelLabs Yara Rules
YARA
3
star
16

Shadowpad

Technical Indicators for SentinelLabs ShadowPad research
2
star
17

IOCs

A Collection of IOC's
2
star
18

aoqin_dragon

Python
2
star
19

meteor-express

Hashes and Yara hunting rules for MeteorExpress Wiper
YARA
1
star
20

Crypt1_IOCs

Massive unpacking of CryptOne samples
1
star