c3rb3ru5d3d53c / mwcfgView external linksLinks
A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck
☆130Nov 25, 2023Updated 2 years ago
Alternatives and similar repositories for mwcfg
Users that are interested in mwcfg are comparing it to the libraries listed below
Sorting:
- Malware Configuration Extraction Modules☆51Nov 25, 2023Updated 2 years ago
- A Binary Genetic Traits Lexer Framework☆522Aug 14, 2025Updated 6 months ago
- An IDA Pro extension for easier (malware) reverse engineering☆116Aug 2, 2022Updated 3 years ago
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆37Mar 15, 2023Updated 2 years ago
- Malduck is your ducky companion in malware analysis journeys☆349Jun 22, 2025Updated 7 months ago
- Malware dynamic instrumentation tool based on frida framework☆110Jun 7, 2020Updated 5 years ago
- Analyses in IDA/Hex-Rays☆87Apr 6, 2023Updated 2 years ago
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!☆82Jun 28, 2023Updated 2 years ago
- The Multiplatform Linux Sandbox☆16Dec 19, 2023Updated 2 years ago
- Dynamic unpacker based on PE-sieve☆796Sep 13, 2025Updated 5 months ago
- Imphash-like calculation on Golang binaries☆49Jul 2, 2022Updated 3 years ago
- Help deobfuscate VBScript☆18Jul 1, 2022Updated 3 years ago
- Yet another rule generator for Yara☆29Jun 6, 2025Updated 8 months ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆171Feb 5, 2026Updated last week
- ☆15Nov 25, 2021Updated 4 years ago
- Miscellaneous Malware RE☆195May 1, 2022Updated 3 years ago
- Windows kernel and user mode emulation.☆1,841Feb 4, 2026Updated last week
- ☆16Apr 30, 2024Updated last year
- Reads and prints information from the website MalAPI.io☆20Jul 14, 2022Updated 3 years ago
- Automatic YARA rule generation for Malpedia☆168Sep 8, 2022Updated 3 years ago
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆262Mar 27, 2023Updated 2 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆42Sep 18, 2018Updated 7 years ago
- ☆32Apr 24, 2022Updated 3 years ago
- Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)☆587May 5, 2024Updated last year
- Script to pull newly-registered domains and check for similarity against a provided word list.☆13Aug 2, 2020Updated 5 years ago
- ☆14Jun 5, 2019Updated 6 years ago
- ☆13Oct 29, 2022Updated 3 years ago
- JPCERT/CC public YARA rules repository☆108Nov 14, 2025Updated 3 months ago
- ☆35Oct 29, 2021Updated 4 years ago
- A C# based tool for analysing malicious OneNote documents☆118Apr 4, 2023Updated 2 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Feb 15, 2022Updated 4 years ago
- DRAKVUF Sandbox - automated hypervisor-level malware analysis system☆1,263Updated this week
- Repository of YARA rules made by Trellix ATR Team☆623Mar 18, 2025Updated 10 months ago
- Generating YARA rules based on binary code☆220Oct 7, 2021Updated 4 years ago
- An automatic unpacker and logger for DotNet Framework targeting files☆266Aug 23, 2023Updated 2 years ago
- A YARA rules repository continuously updated for monitoring the old and new threats from articles, incidents responses ...☆141Nov 19, 2023Updated 2 years ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Apr 12, 2023Updated 2 years ago
- Go Lang Portable Executable Parser☆39Mar 31, 2021Updated 4 years ago
- Scripts, Yara rules and other files developed during malware investigations☆27Aug 19, 2022Updated 3 years ago