poona / APIMiner
API Logger for Windows Executables
☆78Updated 4 years ago
Alternatives and similar repositories for APIMiner:
Users that are interested in APIMiner are comparing it to the libraries listed below
- A golang CLI tool to download malware from a variety of sources.☆142Updated last year
- Malware Configuration Extraction Modules☆49Updated last year
- Write-ups for FireEye's FLARE-On challenges☆25Updated 5 years ago
- Capa analysis importer for Ghidra.☆61Updated 4 years ago
- A small utility to deal with malware embedded hashes.☆49Updated last year
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆163Updated 3 weeks ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆115Updated last year
- TrashDBG the world's worse debugger☆23Updated 3 years ago
- Go Lang Portable Executable Parser☆39Updated 3 years ago
- ☆69Updated last year
- MalUnpack companion driver☆95Updated 9 months ago
- Parsers for custom malware formats ("Funky malware formats")☆95Updated 3 years ago
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆127Updated last year
- Userland API monitor for threat hunting☆58Updated 5 years ago
- ☆105Updated last year
- Malware dynamic instrumentation tool based on frida framework☆104Updated 4 years ago
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆70Updated 11 months ago
- Scripts to aid analysis of files obfuscated with ScatterBee.☆19Updated 2 years ago
- Writeups for CTF challenges☆30Updated last year
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆44Updated 2 years ago
- Unpacking and decryption tools for the Emotet malware☆46Updated 3 years ago
- UnpacMe IDA Byte Search☆28Updated last year
- Unprotect is a python tool for parsing PE malware and extract evasion techniques.☆114Updated last year
- ☆12Updated 3 years ago
- Small visualizator for PE files☆67Updated last year
- Batch script to compile a binary shellcode blob into an exe file☆84Updated 5 years ago
- Leverage AMSI (Antimalware Scan Interface) technology to aid your analysis. This tool saves all buffers (scripts, .NET assemblies, etc) …☆108Updated 3 years ago
- This tool is the result of a reverse engineering process of the Windows service called SysMain. Time to interact with the prefetch files …☆31Updated 4 years ago
- Use YARA rules on Time Travel Debugging traces☆88Updated last year
- Malware Samples that could be used for teaching students about malware analysis.☆53Updated 11 months ago