AnyMaster / pehashng
revised "peHash: A Novel Approach to Fast Malware Clustering"
☆21Updated 8 years ago
Alternatives and similar repositories for pehashng:
Users that are interested in pehashng are comparing it to the libraries listed below
- Command-line Interface for Binar.ly☆37Updated 8 years ago
- Automatically exported from code.google.com/p/verify-sigs☆18Updated 8 years ago
- Extract GUIDs from .NET assemblies☆21Updated 8 years ago
- A tool to generate yara signatures from function blocks☆19Updated 10 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- Proof-of-concept automated baremetal malware analysis framework.☆14Updated 9 years ago
- ☆19Updated 6 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 8 years ago
- Volatility Plugins☆21Updated 9 years ago
- Python libary to normalize Yara signatures☆19Updated 4 years ago
- Tools☆13Updated last year
- Automation for VirusTotal☆31Updated 8 years ago
- Useful scripts, rules etc. for use with YARA☆27Updated 4 years ago
- Network detector for Winnti malware☆20Updated 6 years ago
- openioc_scan Volatility Framework plugin☆42Updated 8 years ago
- ☆16Updated 10 years ago
- QEMU with rVMI extensions☆25Updated 7 years ago
- library to decode/parse zeus-like configuration files☆29Updated 6 years ago
- Malware.lu configuration extractor☆24Updated 10 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 10 years ago
- Analysis PE file or Shellcode☆49Updated 8 years ago
- A REST API server for yara event notifications. Mapping file hashes to yara signatures in Elasticsearch for easy hash lookup or finding h…☆19Updated 9 years ago
- Yara rules for quick reverse engineering of malware.☆19Updated 9 years ago
- Identify botnet panels with Ensembled Decision Trees☆18Updated 8 years ago
- ripPE - section extractor and profiler for PE file analysis☆32Updated 10 years ago
- Malware analyses and helpful scripts☆29Updated 2 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 6 years ago
- ☆68Updated 7 years ago
- Modified edition of cuckoo community modules☆32Updated 5 years ago
- Exporting MISP event attributes to yara rules usable with Thor apt scanner☆24Updated 7 years ago