ldbo / SpuriousEmu
VBA analysis tools
☆24Updated 2 years ago
Alternatives and similar repositories for SpuriousEmu:
Users that are interested in SpuriousEmu are comparing it to the libraries listed below
- ☆23Updated 5 years ago
- Utilities for working with vivisect☆25Updated this week
- ☆47Updated 5 years ago
- Capa analysis importer for Ghidra.☆61Updated 4 years ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- TA505 unpacker Python 2.7☆47Updated 4 years ago
- The Multiplatform Linux Sandbox☆15Updated last year
- ☆18Updated 4 years ago
- Radare2 Metadata Extraction to Elasticsearch☆21Updated 7 months ago
- This repository regroups the Yara Rules for the Unprotect Project☆24Updated 4 years ago
- Plugins for the Viper Framework☆14Updated 5 years ago
- Refs file system dumps analyzer.☆12Updated 6 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 2 years ago
- ☆22Updated 3 years ago
- Handy scripts to speed up malware analysis☆35Updated last year
- Tools for inspecting YARA bytecode☆15Updated 4 years ago
- Flare-On solutions☆36Updated 5 years ago
- ☆66Updated last year
- Hansel - a simple but flexible search for IDA☆26Updated 5 years ago
- Go Lang Portable Executable Parser☆38Updated 3 years ago
- ☆23Updated 4 years ago
- "A Practical Recipe for Hardware Implants" presentation materials.☆13Updated 4 years ago
- A python script that can be used to scan data within in an IDB using Yara.☆22Updated 6 years ago
- My collection of scripts for Ghidra (https://github.com/NationalSecurityAgency/ghidra)☆10Updated 4 years ago
- pure Python binary analysis framework☆22Updated 6 years ago
- ☆13Updated 4 years ago
- This tool is the result of a reverse engineering process of the Windows service called SysMain. Time to interact with the prefetch files …☆30Updated 4 years ago
- Generates YARA rules to detect malware using API hashing☆17Updated 3 years ago
- Emu-strings project - JScript/VBScript automated dropper analysis system☆17Updated 3 years ago