Noriben
Last updated
Last updated
is a powerfull tool that acts as a python wrapper for . It adds an additional layer of malware-specific intelligence to the process.
Noriben's integration with YARA rules is another notable feature. We can leverage YARA rules to enhance our data filtering capabilities, allowing us to identify patterns of interest more efficiently.
ProcMon will open:
After opening Noriben we can proceed to execute the malware.
When we close Noriben it will return a .txt file of the log output.