Velocidex / oleparseLinks
Golang parser for OLE files
☆32Updated 8 months ago
Alternatives and similar repositories for oleparse
Users that are interested in oleparse are comparing it to the libraries listed below
Sorting:
- Collect autorun records from running system☆60Updated 3 years ago
- A Portable Executable parser for Golang☆48Updated 3 weeks ago
- A golang implementation of a prefetch parser.☆20Updated last month
- Alternative YARA scanning engine☆73Updated 3 years ago
- Tools for parsing rulesets using the exact grammar as YARA. Written in Go.☆85Updated 2 years ago
- Imphash-like calculation on Golang binaries☆49Updated 3 years ago
- Golang port of PEFile☆31Updated 5 years ago
- An NTFS file parser in Go☆71Updated 8 months ago
- Provides a multi-platform Graphical User Interface for hashlookup☆12Updated last year
- Pure Python parser for data encoded by .NET's BinaryFormatter☆54Updated 7 years ago
- Telsy CTI Research Team☆57Updated 4 years ago
- Code for BH21 talk: "Generating YARA Rules by Classifying Malicious Byte Sequences"☆17Updated 9 months ago
- Go Lang Portable Executable Parser☆39Updated 4 years ago
- YARI is an interactive debugger for YARA Language.☆90Updated 2 months ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 4 years ago
- Tool to decrypt the configuration of NanoCore and dump all used plugins☆11Updated 4 years ago
- A document tagging library☆30Updated 8 months ago
- ☆33Updated 5 years ago
- Maco - Malware config extractor framework☆41Updated last month
- gyp: A pure Go YARA parser☆106Updated last year
- A collection of shellcode hashes☆17Updated 7 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Updated 2 years ago
- ☆24Updated last year
- Golang Parser for Microsoft Event Logs☆105Updated 3 weeks ago
- Golang port of pefile☆24Updated 8 years ago
- ssdeep cluster analysis for malware files☆31Updated 5 years ago
- TA505 unpacker Python 2.7☆47Updated 5 years ago
- YARA Language Server☆75Updated 2 weeks ago
- Tools for inspecting YARA bytecode☆21Updated 5 years ago
- Library and tools to access the Windows Event Log (EVT) format☆60Updated last year