williballenthin / python-dotnet-binaryformatLinks
Pure Python parser for data encoded by .NET's BinaryFormatter
☆54Updated 7 years ago
Alternatives and similar repositories for python-dotnet-binaryformat
Users that are interested in python-dotnet-binaryformat are comparing it to the libraries listed below
Sorting:
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 7 years ago
- Framework to automatically test and explore the capabilities of generic AV engines☆69Updated 6 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 7 years ago
- Advanced Portable Executable File Analyzer And Disassembler 32 & 64 Bit☆100Updated 6 years ago
- CAPE monitor DLLs☆41Updated 5 years ago
- Analysis PE file or Shellcode☆50Updated 9 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Simple NTFS crawler.☆56Updated 8 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆77Updated 11 years ago
- a collection of yara rules for binary analysis☆24Updated 8 years ago
- A python script that can be used to scan data within in an IDB using Yara.☆23Updated 7 years ago
- Library and tools to access the Windows Event Log (EVT) format☆60Updated last year
- A Generic Windows Memory Scraping Tool☆71Updated 8 years ago
- Generic scripts for public consumption☆85Updated 6 years ago
- Yaras Random☆22Updated 6 years ago
- Hansel - a simple but flexible search for IDA☆25Updated 6 years ago
- Shellcode emulator written with Unicorn Framework With Process Dump Emulation Environment☆124Updated 5 years ago
- QEMU with rVMI extensions☆24Updated 8 years ago
- API Tracker by Cysinfo Team☆22Updated 9 years ago
- Handy scripts to speed up malware analysis☆35Updated 2 years ago
- ☆43Updated 7 years ago
- Use this library to automatically extract PE files compressed with aplib from a binary blob.☆34Updated 6 years ago
- This script is used for extracting DDE in docx and xlsx☆12Updated 7 years ago
- IDA Pro plugin that rename functions on load, based on functionality☆19Updated 7 years ago
- Experimental Windows .text section Patch Detector☆22Updated 10 years ago
- Tool to decompress data from Windows 10 page files and memory dumps, that has been compressed by the Windows 10 memory manager.☆51Updated 6 years ago
- Random stuff for FlareOn☆14Updated 7 years ago
- API functions for Malware Research☆35Updated 6 years ago
- Reflective Polymorphism☆107Updated 7 years ago
- ☆43Updated 7 years ago