PonyPC / myaut_contribLinks
mod to myaut2exe decompiler
☆17Updated 8 years ago
Alternatives and similar repositories for myaut_contrib
Users that are interested in myaut_contrib are comparing it to the libraries listed below
Sorting:
- MWDB exercises☆20Updated 8 months ago
- TA505 unpacker Python 2.7☆47Updated 5 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆77Updated 10 years ago
- Capa analysis importer for Ghidra.☆62Updated 4 years ago
- VSCode extension for the YARA pattern matching language☆64Updated last year
- Malware Configuration Extraction Modules☆51Updated last year
- ☆15Updated 3 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆38Updated 2 years ago
- Ursnif beacon decryptor☆27Updated 2 years ago
- Scans a malware file and lists down the related MBC (Malware Behavior Catalog) details.☆22Updated 3 years ago
- Parse Microsoft shim databases☆30Updated 8 months ago
- VirusTotal Intelligence Search☆39Updated 5 years ago
- Handy scripts to speed up malware analysis☆35Updated last year
- Go Lang Portable Executable Parser☆39Updated 4 years ago
- A multi-threaded malware sample downloader based upon given MD-5/SHA-1/SHA-256 hashes, using multiple malware databases.☆30Updated 2 years ago
- Parses the WMI object database....looking for persistence☆33Updated 5 years ago
- Metadata hash incorporating the Rich Header for robustness against packing and other malware tricks☆68Updated 4 years ago
- ☆68Updated last month
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago
- Windows Prefetch parser. Supports all known versions from Windows XP to Windows 10.☆115Updated 8 months ago
- Various Yara signatures (possibly to be included in a release later).☆87Updated 6 years ago
- Windows link file (shortcuts) examiner☆68Updated last year
- BinSequencer is a script designed to find a common pattern of bytes within a set of samples and generate a YARA rule from the identified…☆78Updated 3 years ago
- Hollowfind is a Volatility plugin to detect different types of process hollowing techniques used in the wild to bypass, confuse, deflect …☆140Updated 2 years ago
- Scripts, Yara rules and other files developed during malware investigations☆25Updated 3 years ago
- $MFT parser (from live systems or a copy of the $MFT) and raw file copy utility☆37Updated last year
- ☆72Updated 2 years ago
- Tools for assisting the reverse engineering of Qakbot☆11Updated 4 years ago
- Script for parsing Symantec Endpoint Protection logs, VBNs, and ccSubSDK database.☆65Updated 2 years ago
- Steezy - Ghetto Yara Generation☆15Updated 2 years ago