doomedraven / ToolsLinks
Combination of different utilities, have fun!
☆212Updated last year
Alternatives and similar repositories for Tools
Users that are interested in Tools are comparing it to the libraries listed below
Sorting:
- capemon: CAPE's monitor☆118Updated last week
- InviZzzible is a tool for assessment of your virtual environments in an easy and reliable way. It contains the most recent and up to date…☆563Updated 3 years ago
- Malduck is your ducky companion in malware analysis journeys☆335Updated last month
- Generating YARA rules based on binary code☆210Updated 3 years ago
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆249Updated 2 years ago
- Automatic YARA rule generation for Malpedia☆160Updated 2 years ago
- Live hunting of code injection techniques☆382Updated 5 years ago
- zer0m0n driver for cuckoo sandbox☆362Updated 10 years ago
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆205Updated 2 years ago
- Dynamic unpacker based on PE-sieve☆732Updated last week
- Trigram database written in C++, suited for malware indexing☆125Updated 7 months ago
- c2 traffic☆188Updated 2 years ago
- BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)☆125Updated 3 years ago
- Standard collection of rules for capa: the tool for enumerating the capabilities of programs☆587Updated last week
- IDA python plugin to scan binary with Yara rules☆173Updated last year
- Community modules for CAPE Sandbox☆97Updated last week
- Extract AutoIt scripts embedded in PE binaries☆184Updated 10 months ago
- Collection of rules created using YARA-Signator over Malpedia☆129Updated 6 months ago
- PeaceMaker Threat Detection is a Windows kernel-based application that detects advanced techniques used by malware.☆420Updated 5 years ago
- Automatically rebuild Import Address Table for dumped PE file. With python bindings!☆119Updated 6 years ago
- YARA malware query accelerator (web frontend)☆428Updated 2 months ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆299Updated last year
- ☆127Updated 4 months ago
- Binee: binary emulation environment☆520Updated 2 years ago
- Automatically generate AV byte signatures from sets of similar binaries.☆273Updated 5 months ago
- Modified edition of cuckoomon☆49Updated 7 years ago
- Official VirusTotal plugin for IDA Pro☆157Updated last year
- List of tools to assist in analyzing samples of ISFB/Gozi/Ursnif☆15Updated 5 years ago
- ☆104Updated last year
- Assortment of hashing algorithms used in malware☆362Updated last week