vivisect / dissectLinks
vstruct based dissectors for various file/protocol formats
☆15Updated 7 years ago
Alternatives and similar repositories for dissect
Users that are interested in dissect are comparing it to the libraries listed below
Sorting:
- A tool to generate yara signatures from function blocks☆19Updated 10 years ago
- Test suite for bypassing Malware sandboxes.☆39Updated 10 years ago
- Malware Fragmentation Tool its a tool that simply fragment the PE file and it can disassemble the PE file, etc this tool very useful for…☆37Updated 9 years ago
- Malware.lu configuration extractor☆25Updated 11 years ago
- Memory forensics of virtualization environments☆47Updated 10 years ago
- Vivisect Structure Definition/Parsing Library☆23Updated 7 years ago
- Haskell parser for the REIL intermediate language (currently a work-in-progress)☆11Updated 7 years ago
- A pure-python win32 debugger interface.☆28Updated 9 years ago
- BinCrowd Plugin for IDA Pro☆43Updated 13 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Membrane: A Posteriori Detection of Malicious Code Loading by Memory Paging Analysis☆41Updated 8 years ago
- IDATACO IDA Pro Plugin☆47Updated 9 years ago
- zer0m0n driver for cuckoo sandbox☆24Updated 10 years ago
- Run a windows process with many inputs and catch exit codes☆14Updated 9 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- Imports MSDN documentation into IDA Pro☆51Updated 13 years ago
- Volatility Plugins☆21Updated 10 years ago
- IDA Pomidor is a plugin for Hex-Ray's IDA Pro disassembler that will help you retain concentration and productivity during long reversing…☆35Updated 10 years ago
- A Rekall interactive document for a Memory Analysis workshop/course.☆43Updated 8 years ago
- Tool to check if your computer is likely to be vulnerable to exploitable constant Read-Write-Execute (RWX) addresses (AVs vulnerability)☆52Updated 9 years ago
- Analysis PE file or Shellcode☆49Updated 8 years ago
- ☆16Updated 10 years ago
- officefileinfo is a python script to help analyse the newer Microsoft Office file formats. There are numerous tools for dealing with the …☆16Updated 9 years ago
- The plugin is an integration of Virus Battle API to the well known IDA Disassembler.☆20Updated 10 years ago
- A Toolkit to assist with the investigation of Sandboxing software☆49Updated 9 years ago
- Various Malware-Related Utilities☆10Updated 8 years ago
- library to decode/parse zeus-like configuration files☆29Updated 7 years ago
- Wrapper class for IDAPython. Regroups various useful functions for reverse engineering of binaries.☆17Updated 9 years ago
- QEMU with rVMI extensions☆25Updated 7 years ago