KuechA / pestudio-cli
Python tool to analyze PE file for patterns used by malware
☆23Updated 2 years ago
Alternatives and similar repositories for pestudio-cli
Users that are interested in pestudio-cli are comparing it to the libraries listed below
Sorting:
- Static Decryptor for IcedID Malware☆18Updated 2 years ago
- A powershell parser for https://github.com/ufrisk/MemProcFS☆44Updated 4 years ago
- A summary about different projects/presentations/tools to test how to evade malware sandbox systems☆51Updated 6 years ago
- Hanoman is an GUI antivirus engine sigature based detection 🐒☆47Updated 3 years ago
- Scans a malware file and lists down the related MBC (Malware Behavior Catalog) details.☆22Updated 2 years ago
- ☆23Updated last year
- Collection of my own detection rules☆20Updated last year
- ☆12Updated 3 years ago
- A python script that allows a researcher to merge databases from Malshare and Malware Bazaar to created enrriched datasets from SIEM tool…☆28Updated 5 years ago
- Collection of scripts / samples / snippits around the community service at www.filescan.io☆11Updated 3 months ago
- Collection of tips, tools, arsenal and techniques I've learned during RE and other CyberSecStuff☆54Updated 3 months ago
- Dataset of packed ELF samples☆19Updated 2 years ago
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆44Updated 2 years ago
- Symantec EDR Internals☆26Updated 3 years ago
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- Analysis tool for estimating the likelihood that a binary contains compressed or encrypted bytes☆47Updated 5 months ago
- Yara rules for various malware☆9Updated 2 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago
- Yara Based Detection Engine for web browsers☆47Updated 3 years ago
- Automatic generator of YARA modules based in protocol buffers☆16Updated 3 months ago
- Parser for Sdba memory pool tags☆18Updated 3 years ago
- This repo contains miscellaneous tools to aid in your malware analysis.☆12Updated 4 years ago
- This is a repository for the public blog with Labs indicators of compromise and code☆18Updated 5 years ago
- AutoIt Analysis Library: Parser & Emulator For Malware Researchers☆21Updated 6 years ago
- Scripts to aid analysis of files obfuscated with ScatterBee.☆20Updated 2 years ago
- Compiles a json dataset using public sources that contains properties to aid in the detection and mitigation of over 1000 variants of ran…☆74Updated last year
- Autopsy Module to analyze Registry Hives☆15Updated 3 years ago
- A script that extracts embedded images from Office Open XML (OOXML) documents and generates image hash similarity graphs that cluster vis…☆21Updated 3 years ago
- ETW-Almulahaza is a consumer python-based tool that help you monitor ETW events of the operating system☆13Updated 2 years ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆22Updated last year