cysinfo / Exescan
ExeScan is the FREE console based tool to detect anomalies in PE (Portable Executable) files. It quickly scans given executable file and detect all kind of anomalies in its PE header fields including checksum verifications, size of various header fields, improper size of raw data, non-ascii/empty section names etc. Various packers/protectors mo…
☆21Updated 6 years ago
Alternatives and similar repositories for Exescan:
Users that are interested in Exescan are comparing it to the libraries listed below
- Analysis PE file or Shellcode☆49Updated 8 years ago
- ☆68Updated 7 years ago
- ☆44Updated 6 years ago
- Static and automated/dynamic malware analysis☆47Updated 9 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 10 years ago
- Malware Fragmentation Tool its a tool that simply fragment the PE file and it can disassemble the PE file, etc this tool very useful for…☆36Updated 9 years ago
- library to decode/parse zeus-like configuration files☆29Updated 7 years ago
- Imports MSDN documentation into IDA Pro☆51Updated 13 years ago
- Automated library compilation and PDB annotation with CMake and IDA Pro☆20Updated 6 years ago
- ☆32Updated 10 months ago
- ActionScript3 dynamic instrumentation tool☆36Updated 8 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆55Updated 7 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Mal Tindex is an Open Source tool for indexing binaries and help attributing malware campaigns☆67Updated 7 years ago
- Volatility Plugins☆21Updated 9 years ago
- IDATACO IDA Pro Plugin☆47Updated 8 years ago
- Miscellanous scripts used for malware analysis☆22Updated 6 years ago
- Anti-technique Codes, Detection of Anti-technique codes☆38Updated 11 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆42Updated 8 years ago
- a collection of public yara rules☆26Updated 5 years ago
- This repository contains the slides and content for the malware unpacking training given at r2con 2017☆50Updated 7 years ago
- Collection of my Python Scripts☆41Updated 4 years ago
- Supporting Files on my analysis of the malware designated hdroot.☆59Updated 8 years ago
- QEMU with rVMI extensions☆25Updated 7 years ago
- Sentinel is a command line tool able to protect Windows 32 bit programs against exploits targeted by attackers or viruses. It can protect…☆71Updated 11 years ago
- A tool to generate yara signatures from function blocks☆19Updated 10 years ago
- Yet another Python library to read and write PE/PE+ files.☆80Updated 8 years ago
- ☆109Updated 7 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated last year
- r2yara - Module for Yara using radare2 information☆34Updated last year