Pinned Repositories
Malwarebytes_crackme
PDF_analysis
Several PDF analysis reassembled with additional tips and tools
PlugX_Mustang-Panda
Presentations
My conference presentations
Trickbot_full_configs
VidarStealer
Notes some analysis related to VidarStealer sample
VN_daily_samples
m4now4r's Repositories
m4now4r/PDF_analysis
Several PDF analysis reassembled with additional tips and tools
m4now4r/awesome-incident-response
A curated list of tools for incident response
m4now4r/beagle
Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.
m4now4r/Cybersecurity-Tradecraft
A repo to support the book
m4now4r/DealPly-script
m4now4r/FileInsight-plugins
FileInsight-plugins: decoding toolbox of McAfee FileInsight hex editor for malware analysis
m4now4r/HexRaysPyTools
IDA Pro plugin which improves work with HexRays decompiler and helps in process of reconstruction structures and classes
m4now4r/ida_ifl
IFL - Interactive Functions List (plugin for IDA Pro)
m4now4r/idaplugins
m4now4r/Introduction-to-Process-Hollowing
m4now4r/Lab-Notes
Code snips and notes
m4now4r/MalwareLab_VM-Setup
Setup scripts for my Malware Analysis VMs
m4now4r/malwoverview
Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, ThreatCrowd, Valhalla, Malware Bazaar, ThreatFox, Triage and it is able to scan Android devices against VT and HA.
m4now4r/MMUnbuilder
Automatic decompilation of Multimedia Builder applications through python script
m4now4r/MODeflattener
MODeflattener deobfuscates control flow flattened functions obfuscated by OLLVM using Miasm.
m4now4r/PortEx
Java library to analyse Portable Executable files with a special focus on malware analysis and PE malformation robustness
m4now4r/RedTeam-Tactics-and-Techniques
Red Teaming Tactics and Techniques
m4now4r/Reverse-Engineering
A FREE comprehensive reverse engineering course covering x86, x64, 32-bit ARM & 64-bit ARM architectures.
m4now4r/threat-hunting-malware-analysis-incident-response
Some portable tools, some YARA, some Python, and a little bit of love. Not all of these tools can be used in incident response. Use PEs with caution.
m4now4r/vld
Visual Leak Detector for Visual C++ 2008-2015
m4now4r/VTCodeBlocks-Maltego
Maltego transforms to pivot between PE files based on their VirusTotal codeblocks
m4now4r/VTCodeSimilarity-YaraGen
m4now4r/VTSubmitter-Maltego
A Maltego transform for VirusTotal Submitter Information
m4now4r/VTvHash-Maltego
A Maltego transform for VirusTotal vHash
m4now4r/wdm
m4now4r/windbg-cheat-sheet
My personal cheat sheet for using WinDbg for kernel debugging