kevoreilly / capemonLinks
capemon: CAPE's monitor
☆125Updated 2 weeks ago
Alternatives and similar repositories for capemon
Users that are interested in capemon are comparing it to the libraries listed below
Sorting:
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆71Updated last year
- Use YARA rules on Time Travel Debugging traces☆92Updated 2 years ago
- Automatically generate AV byte signatures from sets of similar binaries.☆279Updated 9 months ago
- Native Python3 bindings for @horsicq's Detect-It-Easy☆74Updated 4 months ago
- Small tool to convert beteween the PE alignments (raw and virtual).☆95Updated 2 years ago
- Parse .NET executable files.☆77Updated 2 weeks ago
- IDA Pro plugin for recognizing known hashes of API function names☆81Updated 3 years ago
- BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)☆126Updated 3 years ago
- IDA python plugin to scan binary with Yara rules☆177Updated last year
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆115Updated 2 years ago
- A DTrace on Windows Reimplementation☆357Updated 7 months ago
- ☆109Updated last week
- Robust Automated Malware Unpacker☆85Updated 2 years ago
- ☆109Updated 2 years ago
- HashDB API hash lookup plugin for IDA Pro☆331Updated 3 months ago
- Community modules for CAPE Sandbox☆103Updated 3 weeks ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆166Updated last week
- Document ETW providers☆247Updated 5 years ago
- Powershell script deobfuscation using AST in Python☆69Updated last year
- Parsing of YARA rules into AST and building new rulesets in C++.☆126Updated last week
- Simple windows API logger☆109Updated 5 years ago
- The MinHash-based Code Relationship & Investigation Toolkit (MCRIT) is a framework created to simplify the application of the MinHash alg…☆94Updated last month
- Extract AutoIt scripts embedded in PE binaries☆194Updated last year
- Dataset of packed PE samples☆38Updated last year
- Parser to process monitor file formats☆150Updated 2 years ago
- Hyper-V Research is trendy now☆186Updated last year
- Automatic YARA rule generation for Malpedia☆161Updated 3 years ago
- A simple C# executable that invokes an arbitrary method of an arbitrary C# DLL☆135Updated last year
- Anti-Debug encyclopedia contains methods used by malware to verify if they are executed under debugging. It includes the description of v…☆61Updated last year
- FLARE Team's Binary Navigator☆277Updated last month