Bobby-Tablez's repositories

IP-Obfuscator

Hide an IP address in scripts using hex/decimal/octal conversions

VBScrambler

A Python VBScript Code Obfuscator

Language:PythonStargazers:15Issues:0Issues:0

Enable-All-The-Logs

This script enhances endpoint logging telemetry for the purpose of advanced malware threat detection or for building detections or malware analysis. This can be used in production, however you might want to tune the GPO edits as needed.

Language:PowerShellStargazers:14Issues:1Issues:0

Invoke-Mathfuscation

A quick command line utility that generates uses simple addition to obfuscate individual characters, then executes it

Language:PowerShellStargazers:10Issues:0Issues:0

Format-String-Deobfuscator

Deobfuscates PowerShell format strings

Language:PowerShellStargazers:5Issues:0Issues:0

fake_systeminfo

Generate a fake "systeminfo.exe" binary in order to hide the presence of a VM

Language:C#Stargazers:4Issues:0Issues:0

Invoke-XORfuscation

Generate obfuscated PowerShell commands using XOR logic with random keys!

Language:PowerShellStargazers:3Issues:2Issues:0

Process-Suspender

A quick PowerShell utility which launches and immediately suspends a provided process for a specified amount of time.

Language:PowerShellStargazers:3Issues:1Issues:0

Heuristic-Confuser

Sandbox/Heuristic PowerShell Bypass

Language:PowerShellStargazers:2Issues:1Issues:0

Py-BATCH-Fuscator

A Python script which simply obfuscates batch scripts by messing with the encoding.

Language:PythonStargazers:2Issues:0Issues:0

Windows-Sandbox-Flare-VM

This config file will automatically convert a temporary Windows Sandbox environment into a Flare VM for malware analysis.

Stargazers:2Issues:0Issues:0

adaway-parsed

This repo is updated to include a clean list of advertising domains from AdAway found here: https://adaway.org/hosts.txt

Stargazers:1Issues:0Issues:0

Ethanol-Gasoline-Octane-Calculator

A PowerShell script which calculates the octane rating of an ethanol/gasoline mixture based on percentage of ethanol, and octane rating of gasoline (ie 91 or 93)

Language:PowerShellStargazers:1Issues:0Issues:0

FT-Sysmon-Config

Sysmon configuration based on Swift on Security

Stargazers:1Issues:0Issues:0

Sigma-Rules

Contains sigma rules based on current threat research

Language:PowerShellStargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

EDRSilencer

A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

License:MITStargazers:0Issues:0Issues:0

HijackLibs

Project for tracking publicly disclosed DLL Hijacking opportunities.

License:GPL-3.0Stargazers:0Issues:0Issues:0

LOOBins

Living Off the Orchard: macOS Binaries (LOOBins) is designed to provide detailed information on various built-in "living off the land" macOS binaries and how they can be used by threat actors for malicious purposes.

License:GPL-3.0Stargazers:0Issues:0Issues:0
Language:PowerShellStargazers:0Issues:0Issues:0

sigma

Main Rule Repository

Language:PythonLicense:NOASSERTIONStargazers:0Issues:0Issues:0

Yara-Rules

Yara-Rules

Language:YARAStargazers:0Issues:0Issues:0