kevoreilly / capemonLinks
capemon: CAPE's monitor
☆143Updated last week
Alternatives and similar repositories for capemon
Users that are interested in capemon are comparing it to the libraries listed below
Sorting:
- Native Python3 bindings for @horsicq's Detect-It-Easy☆76Updated 7 months ago
- Parse .NET executable files.☆81Updated 3 months ago
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆71Updated last year
- Small tool to convert beteween the PE alignments (raw and virtual).☆106Updated 3 years ago
- Automatically generate AV byte signatures from sets of similar binaries.☆285Updated last year
- HashDB API hash lookup plugin for IDA Pro☆346Updated 2 months ago
- A DTrace on Windows Reimplementation☆366Updated 2 months ago
- Use YARA rules on Time Travel Debugging traces☆96Updated 2 years ago
- IDA python plugin to scan binary with Yara rules☆180Updated last year
- ☆111Updated 3 months ago
- BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)☆128Updated 4 years ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆118Updated 2 years ago
- ☆110Updated 3 years ago
- A simple C# executable that invokes an arbitrary method of an arbitrary C# DLL☆137Updated last year
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆170Updated last month
- Extract AutoIt scripts embedded in PE binaries☆215Updated last year
- IDA Pro plugin for recognizing known hashes of API function names☆82Updated 3 years ago
- Document ETW providers☆266Updated 5 years ago
- Powershell script deobfuscation using AST in Python☆72Updated 3 months ago
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆261Updated 2 years ago
- Robust Automated Malware Unpacker☆86Updated 2 years ago
- WIP Emotet Control Flow Unflattening using miasm and radare2☆23Updated 3 years ago
- IDA plugin for quickly copying disassembly as encoded hex bytes☆65Updated 3 years ago
- ☆18Updated last year
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆156Updated 2 years ago
- Dataset of packed PE samples☆41Updated last year
- Python implementation of the Packed Executable iDentifier (PEiD)☆143Updated last year
- Set of antianalysis techniques found in malware☆133Updated 2 years ago
- Memory Loader Open Source Project by Sentinel-Labs.☆25Updated 4 years ago
- Parsing of YARA rules into AST and building new rulesets in C++.☆129Updated 3 weeks ago