CobaltStrikeScan Logo

CobaltStrikeScan

0
Free
Visit Website

CobaltStrikeScan scans Windows process memory for evidence of DLL injection (classic or reflective injection) and/or performs a YARA scan on the target process' memory for Cobalt Strike v3 and v4 beacon signatures. It can also scan a file for Cobalt Strike beacons and parse their configuration. The tool can display the beacon's configuration if detected.

FEATURES

ALTERNATIVES

A free software that calculates the security ranking of Internet Service Providers to detect malicious activities.

Open Source Intelligence solution for threat intelligence data enrichment and quick analysis of suspicious files or malware.

A simple, self-contained modular host-based IOC scanner for incident responders.

eCrimeLabs provides a SOAR platform for threat detection and response, integrated with MISP.

Maltego transform pack for analyzing and graphing Honeypots using MySQL data.

MISP is an open source threat intelligence platform that enhances threat information sharing and analysis.

Collect various intelligence sources for hosts in CSV format.

Repository of IOCs provided under the Apache 2.0 license

PINNED