path # lines of code # active days days since first update days since last update # commits # contributors first updated last updated first contributor last contributor nightMARE/pyproject.toml 18 10 742 207 16 6 2023-05-03 2024-10-19 7442091+peasead@users.noreply.github.com salim.bitam@outlook.fr nightMARE/src/nightmare/win32.py 74 5 742 365 7 5 2023-05-03 2024-05-14 7442091+peasead@users.noreply.github.com 57736958+dstepanic@users.noreply.github.com nightMARE/src/nightmare/cast.py 21 2 386 380 2 2 2024-04-23 2024-04-29 cyril.francois@elastic.co 99127082+cyril-t-f@users.noreply.github.com nightMARE/src/nightmare/malware/blister/configuration.py 192 6 628 229 11 4 2023-08-25 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/blister/crypto.py 118 3 628 229 5 3 2023-08-25 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/blister/__init__.py 1 1 365 365 2 2 2024-05-14 2024-05-14 57736958+dstepanic@users.noreply.github.com daniel.stepanic@elastic.co nightMARE/src/nightmare/malware/xorddos/configuration.py 52 2 628 623 3 3 2023-08-25 2023-08-30 salim.bitam@outlook.fr 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/xorddos/crypto.py 37 2 628 623 3 3 2023-08-25 2023-08-30 salim.bitam@outlook.fr 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/xorddos/__init__.py 1 1 365 365 2 2 2024-05-14 2024-05-14 57736958+dstepanic@users.noreply.github.com daniel.stepanic@elastic.co nightMARE/src/nightmare/malware/xorddos/strings.py 16 2 628 623 3 3 2023-08-25 2023-08-30 salim.bitam@outlook.fr 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/xorddos/core.py 56 2 628 623 3 3 2023-08-25 2023-08-30 salim.bitam@outlook.fr 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/lobshot/configuration.py 29 3 628 229 5 3 2023-08-25 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/lobshot/crypto.py 20 2 628 623 3 3 2023-08-25 2023-08-30 salim.bitam@outlook.fr 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/lobshot/__init__.py 1 2 628 623 3 3 2023-08-25 2023-08-30 salim.bitam@outlook.fr 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/latrodectus/crypto.py 9 2 366 365 2 2 2024-05-13 2024-05-14 daniel.stepanic@elastic.co 57736958+dstepanic@users.noreply.github.com nightMARE/src/nightmare/malware/latrodectus/__init__.py 1 1 365 365 2 2 2024-05-14 2024-05-14 57736958+dstepanic@users.noreply.github.com daniel.stepanic@elastic.co nightMARE/src/nightmare/malware/smokeloader/configuration.py 81 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/smokeloader/__init__.py 1 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/redlinestealer/configuration.py 52 2 366 365 2 2 2024-05-13 2024-05-14 daniel.stepanic@elastic.co 57736958+dstepanic@users.noreply.github.com nightMARE/src/nightmare/malware/redlinestealer/__init__.py 1 2 366 365 2 2 2024-05-13 2024-05-14 daniel.stepanic@elastic.co 57736958+dstepanic@users.noreply.github.com nightMARE/src/nightmare/malware/nighthawk/crypto.py 10 2 628 623 3 3 2023-08-25 2023-08-30 salim.bitam@outlook.fr 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/nighthawk/__init__.py 1 2 628 623 3 3 2023-08-25 2023-08-30 salim.bitam@outlook.fr 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/strelastealer/payload.py 17 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/strelastealer/__init__.py 1 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/netwire/configuration.py 124 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/netwire/__init__.py 1 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/ghostpulse/payload.py 119 5 565 207 9 4 2023-10-27 2024-10-19 7442091+peasead@users.noreply.github.com salim.bitam@outlook.fr nightMARE/src/nightmare/malware/ghostpulse/__init__.py 1 1 365 365 2 2 2024-05-14 2024-05-14 57736958+dstepanic@users.noreply.github.com daniel.stepanic@elastic.co nightMARE/src/nightmare/malware/icedid/fake_gzip.py 81 3 742 623 5 3 2023-05-03 2023-08-30 7442091+peasead@users.noreply.github.com 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/icedid/configuration.py 35 3 742 623 5 3 2023-05-03 2023-08-30 7442091+peasead@users.noreply.github.com 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/icedid/crypto.py 43 3 742 623 5 3 2023-05-03 2023-08-30 7442091+peasead@users.noreply.github.com 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/malware/icedid/__init__.py 1 1 742 742 2 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co nightMARE/src/nightmare/malware/icedid/compression.py 21 1 742 742 3 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co nightMARE/src/nightmare/malware/icedid/core.py 15 1 742 742 2 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co nightMARE/src/nightmare/malware/icedid/custom_pe.py 271 3 742 380 5 3 2023-05-03 2024-04-29 7442091+peasead@users.noreply.github.com 99127082+cyril-t-f@users.noreply.github.com nightMARE/src/nightmare/malware/__init__.py 1 1 742 742 2 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co nightMARE/src/nightmare/malware/stealc/configuration.py 42 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/stealc/crypto.py 24 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/stealc/__init__.py 1 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr nightMARE/src/nightmare/malware/remcos/c2.py 10 2 386 380 2 2 2024-04-23 2024-04-29 cyril.francois@elastic.co 99127082+cyril-t-f@users.noreply.github.com nightMARE/src/nightmare/malware/remcos/configuration.py 216 3 386 229 4 3 2024-04-23 2024-09-27 cyril.francois@elastic.co salim.bitam@outlook.fr nightMARE/src/nightmare/malware/remcos/__init__.py 1 2 386 380 2 2 2024-04-23 2024-04-29 cyril.francois@elastic.co 99127082+cyril-t-f@users.noreply.github.com nightMARE/src/nightmare/__init__.py 1 1 742 742 2 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co nightMARE/src/nightmare/utils.py 96 9 742 229 14 6 2023-05-03 2024-09-27 7442091+peasead@users.noreply.github.com salim.bitam@outlook.fr nightMARE/src/nightmare/analysis/emulation.py 136 1 742 742 3 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co nightMARE/src/nightmare/analysis/bits.py 31 5 742 380 7 4 2023-05-03 2024-04-29 7442091+peasead@users.noreply.github.com 99127082+cyril-t-f@users.noreply.github.com nightMARE/src/nightmare/analysis/__init__.py 1 1 742 742 2 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co nightMARE/src/nightmare/analysis/compression/lznt1.py 59 2 628 623 3 3 2023-08-25 2023-08-30 salim.bitam@outlook.fr 7442091+peasead@users.noreply.github.com nightMARE/src/nightmare/analysis/compression/__init__.py 1 1 365 365 2 2 2024-05-14 2024-05-14 57736958+dstepanic@users.noreply.github.com daniel.stepanic@elastic.co extractors/lobshot/lobshot_config_extractor.py 59 2 750 229 6 3 2023-04-25 2024-09-27 57736958+dstepanic@users.noreply.github.com salim.bitam@outlook.fr extractors/redlinestealer/redlinestealer_config_extractor.py 50 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr extractors/strelastealer/strela_stealer_payload_extractor.py 43 1 229 229 2 1 2024-09-27 2024-09-27 salim.bitam@outlook.fr salim.bitam@outlook.fr extractors/remcos/remcos_configuration_extractor.py 74 1 377 377 1 1 2024-05-02 2024-05-02 cyril.francois@elastic.co cyril.francois@elastic.co tools/blister/blister_payload_extractor.py 66 3 629 623 3 3 2023-08-24 2023-08-30 57736958+dstepanic@users.noreply.github.com 7442091+peasead@users.noreply.github.com tools/latrodectus/latro_str_decrypt.py 90 3 366 359 4 3 2024-05-13 2024-05-20 daniel.stepanic@elastic.co 57736958+dstepanic@users.noreply.github.com tools/ida_scripts/hexrays_examples/ctree_practical_example.py 39 1 463 463 2 1 2024-02-06 2024-02-06 salim.bitam@outlook.fr salim.bitam@outlook.fr tools/ida_scripts/hexrays_examples/microcode_traversal.py 39 1 463 463 2 1 2024-02-06 2024-02-06 salim.bitam@outlook.fr salim.bitam@outlook.fr tools/ida_scripts/hexrays_examples/ctree_traversal.py 34 1 463 463 3 1 2024-02-06 2024-02-06 salim.bitam@outlook.fr salim.bitam@outlook.fr tools/guloader/guloader_FixCFG.py 37 6 531 380 7 5 2023-11-30 2024-04-29 daniel.stepanic@elastic.co 99127082+cyril-t-f@users.noreply.github.com tools/stix-to-ecs/extra/clean_stix.py 54 1 462 462 1 1 2024-02-07 2024-02-07 7442091+peasead@users.noreply.github.com 7442091+peasead@users.noreply.github.com tools/stix-to-ecs/stix_to_ecs.py 425 9 462 259 22 4 2024-02-07 2024-08-28 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co tools/malware_research/enrich_policy_setup.py 235 2 653 629 3 3 2023-07-31 2023-08-24 78494512+aegrah@users.noreply.github.com 7442091+peasead@users.noreply.github.com tools/malware_research/gsub_pipeline_json_object.py 31 2 653 629 3 3 2023-07-31 2023-08-24 78494512+aegrah@users.noreply.github.com 7442091+peasead@users.noreply.github.com tools/malware_research/custom_pipelines.py 68 2 653 629 3 3 2023-07-31 2023-08-24 78494512+aegrah@users.noreply.github.com 7442091+peasead@users.noreply.github.com tools/ghostpulse/ghostpulse_payload_extractor.py 69 1 565 565 3 2 2023-10-27 2023-10-27 7442091+peasead@users.noreply.github.com salim.bitam@outlook.fr tools/icedid/decompress_file.py 18 1 742 742 2 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co tools/icedid/gzip-variant/extract_payloads_from_core.py 77 3 742 380 4 3 2023-05-03 2024-04-29 7442091+peasead@users.noreply.github.com 99127082+cyril-t-f@users.noreply.github.com tools/icedid/gzip-variant/core_payloads.yar 22 1 742 742 2 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co tools/icedid/gzip-variant/read_configuration.py 17 3 742 380 4 3 2023-05-03 2024-04-29 7442091+peasead@users.noreply.github.com 99127082+cyril-t-f@users.noreply.github.com tools/icedid/gzip-variant/load_core.py 57 1 742 742 2 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co tools/icedid/gzip-variant/extract_gzip.py 31 1 742 742 2 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co tools/icedid/rebuild_pe.py 20 1 742 742 2 2 2023-05-03 2023-05-03 7442091+peasead@users.noreply.github.com cyril.francois@elastic.co tools/icedid/decrypt_file.py 18 3 742 380 4 3 2023-05-03 2024-04-29 7442091+peasead@users.noreply.github.com 99127082+cyril-t-f@users.noreply.github.com tools/warmcookie/warmcookie_http.py 293 1 224 224 2 2 2024-10-02 2024-10-02 57736958+dstepanic@users.noreply.github.com daniel.stepanic@elastic.co tools/warmcookie/warmcookie_str_decrypt.py 88 3 342 224 5 2 2024-06-06 2024-10-02 daniel.stepanic@elastic.co daniel.stepanic@elastic.co tools/abyssworker/client/main.h 36 1 55 55 2 2 2025-03-20 2025-03-20 99127082+cyril-t-f@users.noreply.github.com cyril.francois@elastic.co tools/abyssworker/client/main.c 101 1 55 55 2 2 2025-03-20 2025-03-20 99127082+cyril-t-f@users.noreply.github.com cyril.francois@elastic.co