evilsocket / ergo-pe-avLinks
🧠🦠An artificial neural network and API to detect Windows malware, based on Ergo and LIEF.
☆182Updated 6 years ago
Alternatives and similar repositories for ergo-pe-av
Users that are interested in ergo-pe-av are comparing it to the libraries listed below
Sorting:
- DrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior☆278Updated 6 years ago
- snake - a malware storage zoo☆217Updated 2 years ago
- ☆97Updated 5 years ago
- MoP - "Master of Puppets" - Advanced malware tracking framework☆84Updated last year
- Generating YARA rules based on binary code☆220Updated 4 years ago
- A malware analysis and classification tool.☆190Updated 4 years ago
- Miscellaneous Malware RE☆195Updated 3 years ago
- A Yara rule generator for finding related samples and hunting☆162Updated 3 years ago
- BASS - BASS Automated Signature Synthesizer☆179Updated 7 years ago
- A tool for de-obfuscating PowerShell scripts☆71Updated 6 years ago
- Automatic Yara Rule Generation☆333Updated 10 years ago
- An open source script to perform malware static analysis on Portable Executable☆329Updated 2 years ago
- Parse YARA rules and operate over them more easily.☆195Updated last year
- This repository contains the website and the tools which are part of the joint research between Check Point Research and Intezer to map t…☆111Updated 6 years ago
- Pattern Extractor for Obfuscated Code☆301Updated 4 years ago
- ☆136Updated 7 years ago
- Static based decoders for malware samples☆94Updated 5 years ago
- Command-line and Python debugger for instrumenting and modifying native software behavior on Windows and Linux.☆164Updated 2 years ago
- Wraps around various tools and provides some additional checks/information to produce a centralized report of a PE file.☆208Updated 12 years ago
- Allows you to quickly query a Windows machine for RAM artifacts☆218Updated 5 years ago
- Minimal, consistent Python API for building integrations with malware sandboxes.☆142Updated 2 years ago
- Automated malware unpacker☆120Updated 9 years ago
- This is just my personal compilation of APT malware from whitepaper releases, documents and malware samples from my personal research.☆31Updated 6 years ago
- Tools for parsing rulesets using the exact grammar as YARA. Written in Go.☆85Updated 3 years ago
- Fuzzy Hash calculated from import API of PE files☆91Updated 3 years ago
- Cuckoo Sandbox Dockerfile☆332Updated 5 years ago
- ☆79Updated 3 years ago
- Security ML models encoded as Yara rules☆215Updated 2 years ago
- Personal compilation of APT malware from whitepaper releases, documents and own research☆266Updated 7 years ago
- List of real-world threats against endpoint protection software☆216Updated last week