evilsocket / ergo-pe-av
🧠🦠An artificial neural network and API to detect Windows malware, based on Ergo and LIEF.
☆176Updated 5 years ago
Alternatives and similar repositories for ergo-pe-av:
Users that are interested in ergo-pe-av are comparing it to the libraries listed below
- Generating YARA rules based on binary code☆205Updated 3 years ago
- snake - a malware storage zoo☆219Updated last year
- Automatic Yara Rule Generation☆331Updated 9 years ago
- An easy ATT&CK-based Sysmon hunting tool, showing in Blackhat USA 2019 Arsenal☆201Updated 2 years ago
- DrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior☆271Updated 5 years ago
- This repository contains the website and the tools which are part of the joint research between Check Point Research and Intezer to map t…☆108Updated 5 years ago
- A malware analysis and classification tool.☆191Updated 3 years ago
- The pattern matching swiss knife☆138Updated 4 years ago
- ☆97Updated 4 years ago
- Cosa Nostra, a FOSS graph based malware clusterization toolkit.☆229Updated last year
- Security ML models encoded as Yara rules☆213Updated last year
- Personal compilation of APT malware from whitepaper releases, documents and own research☆259Updated 6 years ago
- For all these times you're asking yourself "what is this panel again?"☆253Updated last year
- Parse YARA rules and operate over them more easily.☆180Updated last week
- A Tool for Automatic Analysis of Malware Behavior☆369Updated 5 years ago
- Cuckoo Sandbox Dockerfile☆325Updated 4 years ago
- An open source script to perform malware static analysis on Portable Executable☆311Updated last year
- IOC from articles, tweets for archives☆313Updated last year
- A Yara rule generator for finding related samples and hunting☆158Updated 2 years ago
- Django web interface for managing Yara rules☆190Updated 6 years ago
- This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)☆100Updated 3 years ago
- Allows you to quickly query a Windows machine for RAM artifacts☆219Updated 4 years ago
- 16,432 Free Yara rules created by☆381Updated 5 years ago
- A tool to detect and crash Cuckoo Sandbox☆290Updated 6 months ago
- ☆134Updated 6 years ago
- Imaginary C2 is a python tool which aims to help in the behavioral (network) analysis of malware. Imaginary C2 hosts a HTTP server which …☆448Updated 2 years ago
- Wraps around various tools and provides some additional checks/information to produce a centralized report of a PE file.☆205Updated 11 years ago
- Tools for parsing rulesets using the exact grammar as YARA. Written in Go.☆83Updated 2 years ago
- Set of tools for interacting with Malshare☆153Updated 4 years ago
- MoP - "Master of Puppets" - Advanced malware tracking framework☆82Updated 5 months ago