c3rb3ru5d3d53c / mwcfg
A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck
☆127Updated last year
Alternatives and similar repositories for mwcfg:
Users that are interested in mwcfg are comparing it to the libraries listed below
- Malware Configuration Extraction Modules☆48Updated last year
- A golang CLI tool to download malware from a variety of sources.☆142Updated last year
- Lazarus analysis tools and research report☆55Updated last year
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆43Updated last year
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆138Updated last year
- Malware Samples that could be used for teaching students about malware analysis.☆52Updated 10 months ago
- ☆103Updated last year
- YARA rule analyzer to improve rule quality and performance☆96Updated last month
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆58Updated 2 years ago
- runsc loads 32/64 bit shellcode (depending on how runsc is compiled) in a way that makes it easy to load in a debugger. This code is base…☆36Updated 2 years ago
- Rules shared by the community from 100 Days of YARA 2024☆83Updated last month
- ☆13Updated 8 months ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆114Updated last year
- Leverage AMSI (Antimalware Scan Interface) technology to aid your analysis. This tool saves all buffers (scripts, .NET assemblies, etc) …☆107Updated 3 years ago
- Malware similarity platform with modularity in mind.☆78Updated 3 years ago
- ☆65Updated 2 years ago
- A small utility to deal with malware embedded hashes.☆49Updated last year
- The Windows Malware Analysis Reversing Core Tools☆91Updated 4 years ago
- JPCERT/CC public YARA rules repository☆106Updated 2 months ago
- Standardized Malware Analysis Tool☆52Updated 3 years ago
- A guide on how to write fast and memory friendly YARA rules☆135Updated this week
- Python based CLI for MalwareBazaar☆36Updated 3 months ago
- Sentello is python script that simulates the anti-evasion and anti-analysis techniques used by malware.☆73Updated 3 years ago
- Use YARA rules on Time Travel Debugging traces☆89Updated last year
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆82Updated last year
- Repository of Yara Rules☆97Updated last month
- This is a little plugin to copy disassembly in a way that is usable in YARA rules!☆41Updated last year
- Rules Shared by the Community from 100 Days of YARA 2023☆77Updated last year
- API Logger for Windows Executables☆78Updated 4 years ago
- Configuration Extractors for Malware☆89Updated 2 weeks ago