mandiant / dncil
The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.
☆133Updated this week
Related projects: ⓘ
- Parse .NET executable files.☆72Updated 5 months ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆114Updated last year
- ☆97Updated 10 months ago
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆61Updated 5 months ago
- API Logger for Windows Executables☆77Updated 3 years ago
- An automatic unpacker and logger for DotNet Framework targeting files☆248Updated last year
- a PE Loader and Windows API tracer. Useful in malware analysis.☆138Updated 2 years ago
- A golang CLI tool to download malware from a variety of sources.☆139Updated 7 months ago
- An IDA Pro extension for easier (malware) reverse engineering☆109Updated 2 years ago
- LERN GHIDRA☆84Updated last year
- ☆92Updated this week
- Static Binary Instrumentation tool for Windows x64 executables☆176Updated last month
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆105Updated 2 months ago
- MalUnpack companion driver☆92Updated 3 months ago
- Malware dynamic instrumentation tool based on frida framework☆101Updated 4 years ago
- Ghidra scripts for malware analysis☆84Updated 8 months ago
- capemon: CAPE's monitor☆97Updated this week
- Set of antianalysis techniques found in malware☆124Updated last year
- IDA Pro plugin for recognizing known hashes of API function names☆82Updated 2 years ago
- ☆94Updated last year
- Use YARA rules on Time Travel Debugging traces☆86Updated last year
- Parsers for custom malware formats ("Funky malware formats")☆92Updated 2 years ago
- IDA plugin for quickly copying disassembly as encoded hex bytes☆56Updated 2 years ago
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆148Updated 8 months ago
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆125Updated 9 months ago
- Writeups for CTF challenges☆28Updated 10 months ago
- VBScript & VBA source-to-source deobfuscator with partial-evaluation☆72Updated last month
- Powershell script deobfuscation using AST in Python☆61Updated 8 months ago
- UnpacMe IDA Byte Search☆25Updated 10 months ago
- ☆107Updated 4 years ago