MAECProject / pefile-to-maecLinks
Generate MAEC XML from Ero Carrera's pefile output
☆15Updated 8 years ago
Alternatives and similar repositories for pefile-to-maec
Users that are interested in pefile-to-maec are comparing it to the libraries listed below
Sorting:
- Summit Route End Point Protection - Server code☆12Updated 9 years ago
- Basic file metadata gathering script☆21Updated 2 months ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 8 years ago
- ☆10Updated 5 months ago
- Malware analyses and helpful scripts☆29Updated 3 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- Print the strings of encoded printable characters in files☆12Updated 9 years ago
- An offensive bash script which tries to find GENERIC privesc vulnerabilities and issues.☆13Updated 7 years ago
- A tool to generate yara signatures from function blocks☆19Updated 10 years ago
- ☆10Updated 7 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Pack required dlls into a single binary that has no imports and makes direct syscalls on Windows☆28Updated 7 years ago
- Local enumeration and exploitation framework.☆18Updated 7 years ago
- Tools to enumerate Windows Firewall Hook Drivers on Windows 2000, XP and 2003☆20Updated 10 years ago
- Analyzes open source bug trackers for interesting vulnerabilities☆23Updated 10 years ago
- Get a list of installed software in a safe manner☆11Updated 7 years ago
- RunPE dump - I wrote this to have better control over the analysis of malwares. I can stop and analysis malware when it uses some of the …☆10Updated 9 years ago
- ☆13Updated 4 years ago
- Spam Honeypot with Intelligent Virtual Analyzer☆9Updated 9 years ago
- Linux-KVM with rVMI extensions☆22Updated 7 years ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 7 years ago
- simple rootkit for computer security class☆14Updated 12 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 10 years ago
- ☆14Updated 9 years ago
- Agent installed on node to launch IDA,Bindiff,... and send results to the server ( AutoDiffWeb )☆10Updated 9 years ago
- An AV evasion technique using multibyte xor encoding of shellcode☆8Updated 8 years ago
- Random stuff for FlareOn☆13Updated 6 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Updated 8 years ago
- Win32 Shellcodes☆9Updated 7 years ago
- GSAudit at Symantec, ExeAudit at RIM, RECX Binary Assurance for Windows at Recx etc. - core library now WinBinaryAudit☆24Updated 9 years ago