vivisect / dissect
vstruct based dissectors for various file/protocol formats
☆15Updated 7 years ago
Related projects: ⓘ
- A tool to generate yara signatures from function blocks☆19Updated 9 years ago
- a collection of yara rules for binary analysis☆23Updated 7 years ago
- ☆31Updated this week
- Analysis PE file or Shellcode☆48Updated 8 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆34Updated 8 years ago
- Memory forensics of virtualization environments☆45Updated 9 years ago
- Run a windows process with many inputs and catch exit codes☆14Updated 8 years ago
- Malware analyses and helpful scripts☆29Updated 2 years ago
- zer0m0n driver for cuckoo sandbox☆21Updated 9 years ago
- Vivisect Structure Definition/Parsing Library☆22Updated 7 years ago
- Malware.lu configuration extractor☆24Updated 10 years ago
- ☆33Updated this week
- Test suite for bypassing Malware sandboxes.☆38Updated 9 years ago
- Haskell parser for the REIL intermediate language (currently a work-in-progress)☆11Updated 6 years ago
- Volatility Plugins☆21Updated 9 years ago
- The plugin is an integration of Virus Battle API to the well known IDA Disassembler.☆18Updated 9 years ago
- ☆57Updated this week
- Malware Fragmentation Tool its a tool that simply fragment the PE file and it can disassemble the PE file, etc this tool very useful for…☆36Updated 8 years ago
- ☆32Updated 3 months ago
- Carves EXEs from given data files, using intelligent carving based upon PE headers☆36Updated 7 years ago
- Server for receiving autorun data from the clients☆13Updated 6 years ago
- A Volatility plugin for finding sqlite database rows☆22Updated 5 years ago
- IDA Python scripts project for snippets detection☆22Updated 9 years ago
- ☆15Updated this week
- simple plugin to detect shellcode on Bro IDS with Unicorn☆34Updated 7 years ago
- ☆27Updated 2 years ago
- IDA Pomidor is a plugin for Hex-Ray's IDA Pro disassembler that will help you retain concentration and productivity during long reversing…☆35Updated 9 years ago
- A collection of Volatility Framework plugins.☆26Updated 11 years ago
- Allows a user to grab documentation from online MSDN for a given function name in IDA, and import the documentation as a repeatable comme…☆15Updated 12 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆31Updated 6 months ago