-
Notifications
You must be signed in to change notification settings - Fork 432
References
hasherezade edited this page Feb 19, 2020
·
20 revisions
- Loki - Simple IOC Scanner - using PE-sieve
- tknk_scanner: a community-based integrated malware identification system - using HollowsHunter
- whack-a-proc: catch hidden executables as they are injected - using PE-sieve
- posq-ext-bin : extension to osquery windows that enhances it with real-time telemetry, log monitoring and other endpoint data collection - using PE-sieve
- BlueSpawn : a tool that helps blue teams monitor Windows systems in real-time against active attackers by detecting anomalous activity - using PE-sieve