zbetcheckin / PDF_analysis
Several PDF analysis reassembled with additional tips and tools
☆322Updated last year
Alternatives and similar repositories for PDF_analysis:
Users that are interested in PDF_analysis are comparing it to the libraries listed below
- Tool to help analyze PDF files☆181Updated 10 years ago
- FAME Automates Malware Evaluation☆877Updated 2 months ago
- Vba2Graph - Generate call graphs from VBA code, for easier analysis of malicious documents.☆275Updated 3 years ago
- A VBA parser and emulation engine to analyze malicious macros.☆1,065Updated 6 months ago
- Web App for Volatility framework☆379Updated 2 months ago
- Sandbox for semi-automatic Javascript malware analysis, deobfuscation and payload extraction. Written for Node.js☆466Updated last year
- Malware Configuration And Payload Extraction☆748Updated 2 months ago
- 16,432 Free Yara rules created by☆381Updated 5 years ago
- A VBA parser and emulation engine to analyze malicious macros.☆93Updated this week
- Differential Analysis of Malware in Memory☆211Updated 7 years ago
- ☆274Updated last year
- Set of Yara rules for finding files using magics headers☆136Updated 4 years ago
- Collaborative malware analysis framework☆375Updated 6 years ago
- For all these times you're asking yourself "what is this panel again?"☆253Updated last year
- ph0neutria is a malware zoo builder that sources samples straight from the wild. Everything is stored in Viper for ease of access and man…☆300Updated 4 years ago
- Pattern Extractor for Obfuscated Code☆297Updated 2 years ago
- Regipy is an os independent python library for parsing offline registry hives☆251Updated last month
- Windows Live Artifacts Acquisition Script☆186Updated 2 years ago
- An open source script to perform malware static analysis on Portable Executable☆311Updated last year
- Scripts to analyze stuff☆144Updated 2 months ago
- An open source framework for enterprise level automated analysis.☆395Updated 2 years ago
- Allows you to quickly query a Windows machine for RAM artifacts☆218Updated 4 years ago
- Hollowfind is a Volatility plugin to detect different types of process hollowing techniques used in the wild to bypass, confuse, deflect …☆131Updated 2 years ago
- FCL (Fileless Command Lines) - Known command lines of fileless malicious executions☆464Updated 3 years ago
- Automatic Yara Rule Generation☆331Updated 8 years ago
- Builds malware analysis Windows VMs so that you don't have to.☆1,040Updated 3 years ago
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆288Updated 7 years ago
- snake - a malware storage zoo☆217Updated last year
- Mac OS X Memory Analysis Toolkit☆166Updated 8 years ago
- Citizen Lab Malware Reports☆271Updated 4 years ago