google / maldoca
Malicious Microsoft Office document analyzer
☆65Updated last year
Alternatives and similar repositories for maldoca:
Users that are interested in maldoca are comparing it to the libraries listed below
- Parsing of YARA rules into AST and building new rulesets in C++.☆121Updated 3 weeks ago
- capemon: CAPE's monitor☆107Updated this week
- Data to test capa's code and rules.☆41Updated 3 weeks ago
- Community modules for CAPE Sandbox☆89Updated this week
- Automatically generate AV byte signatures from sets of similar binaries.☆263Updated 2 months ago
- Collection of YARA rules designed for usage through VirusTotal.com.☆66Updated 10 months ago
- ☆43Updated 10 months ago
- Small visualizator for PE files☆67Updated last year
- Alternative YARA scanning engine☆67Updated 2 years ago
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆68Updated 10 months ago
- This tool is the result of a reverse engineering process of the Windows service called SysMain. Time to interact with the prefetch files …☆30Updated 4 years ago
- Yapscan is a YAra based Process SCANner, aimed at giving more control about what to scan and giving detailed reports on matches.☆61Updated last year
- Cockroach is your primitive & immortal swiss army knife.☆47Updated 3 years ago
- YARI is an interactive debugger for YARA Language.☆88Updated last month
- ☆13Updated 2 years ago
- Library and tools to access the Windows Prefetch File (SCCA) format.☆72Updated last month
- Symbol hash for ELF files☆108Updated 3 years ago
- Rekall Memory Forensic Framework☆31Updated 5 years ago
- Unprotect is a python tool for parsing PE malware and extract evasion techniques.☆113Updated last year
- ☆61Updated last year
- Use YARA rules on Time Travel Debugging traces☆89Updated last year
- A golang CLI tool to download malware from a variety of sources.☆142Updated last year
- ConventionEngine - A Yara Rulepack for PDB Path Hunting☆38Updated last year
- YARA Language Server☆68Updated this week
- Visually inspect and force decode YARA and regex matches found in both binary and text data. With Colors.☆112Updated 2 months ago
- A set of small utilities, helpers for PIN tracers☆31Updated last year
- Automatic YARA rule generation for Malpedia☆157Updated 2 years ago
- Unpacking and decryption tools for the Emotet malware☆46Updated 3 years ago
- Named pipe I/O ETW provider for Windows☆69Updated 4 years ago
- ☆63Updated 5 years ago