DissectMalware / yaradbg-backendLinks
☆25Updated 2 years ago
Alternatives and similar repositories for yaradbg-backend
Users that are interested in yaradbg-backend are comparing it to the libraries listed below
Sorting:
- ☆39Updated last year
- Identifies metadata of .NET binary files.☆21Updated last year
- Help deobfuscate VBScript☆18Updated 3 years ago
- ☆34Updated last week
- Golang bindings for PE-sieve☆42Updated 2 years ago
- A pcap capture analysis helper☆25Updated 2 years ago
- A scanner that files with compromised or untrusted code signing certificates written in python.☆65Updated 2 years ago
- SRE - Dissecting Malware for Static Analysis & the Complete Command-line Tool☆57Updated last year
- ☆30Updated 4 months ago
- Collection of tips, tools, arsenal and techniques I've learned during RE and other CyberSecStuff☆57Updated 4 months ago
- Defeating Anti-Debugging Techniques for Malware Analysis☆13Updated 3 years ago
- rpv-web is a browser based frontend for the rpv library☆26Updated last month
- An injector that use PT_LOAD technique☆12Updated 3 years ago
- ☆18Updated last year
- A C++ tool for process memory scanning & suspicious telemetry generation that attempts to detect a number of malicious techniques used by…☆84Updated last year
- A mechanism that trampoline hooks functions in x86/x64 systems.☆21Updated last year
- General malware analysis stuff☆37Updated last year
- ☆12Updated 3 years ago
- Finds imports that could be exploited, still requires manual analysis.☆29Updated 3 years ago
- How to set up 2 VirtualBox VM to debug kernel driver using windbg☆57Updated 3 years ago
- Script to chain search parameters for MalwareBazaar☆12Updated 11 months ago
- Python 3 - Manipulation and conversation with different data type (Bytes operations)☆27Updated 3 years ago
- Tool that can be used to trim useless things from a PE file such as the things a file pumper would add.☆29Updated 9 months ago
- ☆18Updated last year
- Small visualizator for PE files☆70Updated 2 years ago
- ☆27Updated last year
- A utility that can be used to launch an executable with a DLL injected☆19Updated 2 years ago
- .NET deobfuscator and unpacker (with a control flow unflattener for DoubleZero added).☆29Updated 3 years ago
- ☆37Updated 10 months ago
- ☆75Updated 2 years ago