ralphje / signifyLinks
Module to generate and verify Authenticode signatures
☆84Updated 3 weeks ago
Alternatives and similar repositories for signify
Users that are interested in signify are comparing it to the libraries listed below
Sorting:
- Parse .NET executable files.☆80Updated 3 months ago
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆71Updated last year
- Native Python3 bindings for @horsicq's Detect-It-Easy☆75Updated 6 months ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆118Updated 2 years ago
- Authenticode-parser is a simple C library for Authenticode format parsing using OpenSSL.☆23Updated last year
- Small tool to convert beteween the PE alignments (raw and virtual).☆106Updated 2 years ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆144Updated 5 years ago
- Simple windows API logger☆109Updated 6 years ago
- anti-ransomware file-system filter☆67Updated last year
- a PE Loader and Windows API tracer. Useful in malware analysis.☆143Updated 3 years ago
- ☆26Updated 2 years ago
- MalUnpack companion driver☆97Updated last year
- Use YARA rules on Time Travel Debugging traces☆96Updated 2 years ago
- Windows Event Log Knowledge Base☆28Updated last week
- Winbindex bot to pull in binaries for specific releases☆48Updated 2 years ago
- A WinDbg extension to trace COM interactions☆122Updated 3 months ago
- Windows kernel PDB data parsed into YAML☆41Updated last month
- Deobfuscation library for PoisionPlug.SHADOW's ScatterBrain obfuscator☆68Updated 8 months ago
- Command line utility for copying files on NTFS using low level disk access☆39Updated last year
- Small visualizator for PE files☆70Updated 2 years ago
- capemon: CAPE's monitor☆142Updated this week
- Metadata hash incorporating the Rich Header for robustness against packing and other malware tricks☆70Updated 4 years ago
- Memory Loader Open Source Project by Sentinel-Labs.☆25Updated 4 years ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago
- ☆26Updated 4 years ago
- Run Processes as PPL with ELAM☆173Updated 3 years ago
- ☆32Updated 3 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆146Updated 6 years ago
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆62Updated last year
- Resolve DOS MZ executable symbols at runtime☆95Updated 4 years ago