-
Notifications
You must be signed in to change notification settings - Fork 432
References
hasherezade edited this page Jul 7, 2022
·
20 revisions
- Loki - Simple IOC Scanner - using PE-sieve
- tknk_scanner: a community-based integrated malware identification system - using HollowsHunter
- whack-a-proc: catch hidden executables as they are injected - using PE-sieve
- PolyLogyx Windows OSQuery Extension (posq-ext-bin) : extension to OSQuery Windows that enhances it with real-time telemetry, log monitoring and other endpoint data collection - using PE-sieve
- BlueSpawn : a tool that helps blue teams monitor Windows systems in real-time against active attackers by detecting anomalous activity using PE-sieve
- Core Threat scanner : using PE-sieve
- SledgeRE : using PE-sieve/mal_unpack