williballenthin / python-dotnet-binaryformatLinks
Pure Python parser for data encoded by .NET's BinaryFormatter
☆54Updated 7 years ago
Alternatives and similar repositories for python-dotnet-binaryformat
Users that are interested in python-dotnet-binaryformat are comparing it to the libraries listed below
Sorting:
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 7 years ago
- Hansel - a simple but flexible search for IDA☆26Updated 6 years ago
- Simple NTFS crawler.☆56Updated 8 years ago
- Analysis PE file or Shellcode☆50Updated 9 years ago
- Random stuff for FlareOn☆14Updated 7 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- A python script that can be used to scan data within in an IDB using Yara.☆23Updated 7 years ago
- CAPE monitor DLLs☆41Updated 5 years ago
- ☆43Updated 7 years ago
- Advanced Portable Executable File Analyzer And Disassembler 32 & 64 Bit☆100Updated 6 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆78Updated 11 years ago
- QEMU with rVMI extensions☆25Updated 8 years ago
- API functions for Malware Research☆35Updated 6 years ago
- Framework to automatically test and explore the capabilities of generic AV engines☆69Updated 6 years ago
- IDA Pro plugin that rename functions on load, based on functionality☆19Updated 7 years ago
- Handy scripts to speed up malware analysis☆35Updated 2 years ago
- Generic scripts for public consumption☆85Updated 6 years ago
- a collection of yara rules for binary analysis☆24Updated 8 years ago
- ☆43Updated 7 years ago
- TA505 unpacker Python 2.7☆47Updated 5 years ago
- Yaras Random☆22Updated 6 years ago
- Tool to decompress data from Windows 10 page files and memory dumps, that has been compressed by the Windows 10 memory manager.☆51Updated 6 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆57Updated 8 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 7 years ago
- Scripts targeting specific families☆13Updated 8 years ago
- Maltego transforms to pivot between PE files based on their VirusTotal codeblocks☆18Updated 4 years ago
- Library and tools to access the Windows Event Log (EVT) format☆60Updated last year
- Extract GUIDs from .NET assemblies☆21Updated 9 years ago
- Automatically exported from code.google.com/p/verify-sigs☆18Updated 9 years ago
- Network detector for Winnti malware☆21Updated 7 years ago