decalage2 / ViperMonkey
A VBA parser and emulation engine to analyze malicious macros.
☆1,054Updated 4 months ago
Related projects ⓘ
Alternatives and complementary repositories for ViperMonkey
- Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)☆572Updated 6 months ago
- Noriben - Portable, Simple, Malware Analysis Sandbox☆1,120Updated 11 months ago
- PowerShell script for deobfuscating encoded PowerShell scripts☆417Updated 3 years ago
- An open source script to perform malware static analysis on Portable Executable☆309Updated last year
- A VBA p-code disassembler☆457Updated 3 years ago
- Malware Configuration And Payload Extraction☆747Updated 2 years ago
- Yara Rule Analyzer and Statistics☆359Updated last year
- Volatility plugins developed and maintained by the community☆343Updated 3 years ago
- yarGen is a generator for YARA rules☆1,557Updated 5 months ago
- Standard collection of rules for capa: the tool for enumerating the capabilities of programs☆543Updated this week
- ☆709Updated 2 years ago
- Analysis of malware and Cyber Threat Intel of APT and cybercriminals groups☆704Updated last year
- PowerShell Obfuscation Detection Framework☆725Updated 11 months ago
- Volatility plugin for extracts configuration data of known malware☆485Updated 10 months ago
- DRAKVUF Sandbox - automated hypervisor-level malware analysis system☆1,060Updated 3 weeks ago
- Indicators from Unit 42 Public Reports☆702Updated last month
- YARA Rules I come across on the internet☆334Updated 7 months ago
- ☆417Updated last year
- ☆732Updated last year
- Artifact analysis tools by JPCERT/CC Analysis Center☆455Updated 4 months ago
- Please no pull requests for this repository. Thanks!☆2,023Updated 2 weeks ago
- Online hash checker for Virustotal and other services☆809Updated 6 months ago
- Repository of YARA rules made by Trellix ATR Team☆570Updated 11 months ago
- Vba2Graph - Generate call graphs from VBA code, for easier analysis of malicious documents.☆274Updated 2 years ago
- MBC content in markdown☆375Updated this week
- Regipy is an os independent python library for parsing offline registry hives☆244Updated 2 months ago
- Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.☆899Updated 11 months ago
- Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)☆1,592Updated 5 years ago
- ☆1,051Updated 5 years ago
- An Active Defense and EDR software to empower Blue Teams☆1,239Updated last year