PafishPafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware families do
Stars: ✭ 2,026 (+427.6%)
AntidebuggingA collection of c++ programs that demonstrate common ways to detect the presence of an attached debugger.
Stars: ✭ 161 (-58.07%)
Freki🐺 Malware analysis platform
Stars: ✭ 285 (-25.78%)
SimplifyAndroid virtual machine and deobfuscator
Stars: ✭ 3,865 (+906.51%)
Dex OracleA pattern based Dalvik deobfuscator which uses limited execution to improve semantic analysis
Stars: ✭ 398 (+3.65%)
binlexA Binary Genetic Traits Lexer Framework
Stars: ✭ 303 (-21.09%)
Anti-DebuggingA collection of c++ programs that demonstrate common ways to detect the presence of an attached debugger.
Stars: ✭ 297 (-22.66%)
memscrimperCode for the DIMVA 2018 paper: "MemScrimper: Time- and Space-Efficient Storage of Malware Sandbox Memory Dumps"
Stars: ✭ 25 (-93.49%)
ApkfileAndroid app analysis and feature extraction library
Stars: ✭ 190 (-50.52%)
MalwaresearchA command line tool to find malwares on http://openmalware.org
Stars: ✭ 190 (-50.52%)
DrsemuDrSemu - Sandboxed Malware Detection and Classification Tool Based on Dynamic Behavior
Stars: ✭ 237 (-38.28%)
Threat HuntingPersonal compilation of APT malware from whitepaper releases, documents and own research
Stars: ✭ 219 (-42.97%)
fame modulesCommunity modules for FAME
Stars: ✭ 55 (-85.68%)
malware-writeupsPersonal research and publication on malware families
Stars: ✭ 104 (-72.92%)
decrypticonJava-layer Android Malware Simplifier
Stars: ✭ 17 (-95.57%)
Detect It EasyProgram for determining types of files for Windows, Linux and MacOS.
Stars: ✭ 2,982 (+676.56%)
PwndbgExploit Development and Reverse Engineering with GDB Made Easy
Stars: ✭ 4,178 (+988.02%)
SojoboA binary analysis framework
Stars: ✭ 116 (-69.79%)
FameFAME Automates Malware Evaluation
Stars: ✭ 663 (+72.66%)
YargenyarGen is a generator for YARA rules
Stars: ✭ 795 (+107.03%)
MalwareHashDBMalware hashes for open source projects.
Stars: ✭ 31 (-91.93%)
SimpleatorSimpleator ("Simple-ator") is an innovative Windows-centric x64 user-mode application emulator that leverages several new features that were added in Windows 10 Spring Update (1803), also called "Redstone 4", with additional improvements that were made in Windows 10 October Update (1809), aka "Redstone 5".
Stars: ✭ 260 (-32.29%)
ThezooA repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
Stars: ✭ 7,849 (+1944.01%)
Malware FeedBringing you the best of the worst files on the Internet.
Stars: ✭ 69 (-82.03%)
freki🐺 Malware analysis platform
Stars: ✭ 327 (-14.84%)
bluepillBluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)
Stars: ✭ 94 (-75.52%)
SeeSandboxed Execution Environment
Stars: ✭ 770 (+100.52%)
WdbgarkWinDBG Anti-RootKit Extension
Stars: ✭ 450 (+17.19%)
yaraMalice Yara Plugin
Stars: ✭ 27 (-92.97%)
PevThe PE file analysis toolkit
Stars: ✭ 422 (+9.9%)
NorimaciNorimaci is a simple and lightweight malware analysis sandbox for macOS
Stars: ✭ 37 (-90.36%)
ProbedroidA SDK for the creation of analysis tools without obtaining app source code in order to profile runtime performance, examine code coverage, and track high-risk behaviors of a given app on Android 5.0 and above.
Stars: ✭ 182 (-52.6%)
Nauz File DetectorLinker/Compiler/Tool detector for Windows, Linux and MacOS.
Stars: ✭ 146 (-61.98%)
PolichombrCollaborative malware analysis framework
Stars: ✭ 307 (-20.05%)
CmulatorCmulator is ( x86 - x64 ) Scriptable Reverse Engineering Sandbox Emulator for shellcode and PE binaries . Based on Unicorn & Zydis Engine & javascript
Stars: ✭ 197 (-48.7%)
XapkdetectorAPK/DEX detector for Windows, Linux and MacOS.
Stars: ✭ 208 (-45.83%)
PecliCLI tool to analyze PE files
Stars: ✭ 46 (-88.02%)
Malware SamplesA collection of malware samples and relevant dissection information, most probably referenced from http://blog.inquest.net
Stars: ✭ 565 (+47.14%)
MultiscannerModular file scanning/analysis framework
Stars: ✭ 494 (+28.65%)
MalwareDatabaseMalware samples for analysis, researchers, anti-virus and system protection testing.(1300+ Malware-samples!)
Stars: ✭ 21 (-94.53%)
Linux.miraiLeaked Linux.Mirai Source Code for Research/IoC Development Purposes
Stars: ✭ 466 (+21.35%)
Malware-ZooHashes of infamous malware
Stars: ✭ 18 (-95.31%)
MaliceVirusTotal Wanna Be - Now with 100% more Hipster
Stars: ✭ 1,253 (+226.3%)
OwlyshieldOwlyshield is an EDR framework designed to safeguard vulnerable applications from potential exploitation (C&C, exfiltration and impact))..
Stars: ✭ 281 (-26.82%)
malware-persistenceCollection of malware persistence and hunting information. Be a persistent persistence hunter!
Stars: ✭ 109 (-71.61%)
assemblylineAssemblyLine 4 - File triage and malware analysis
Stars: ✭ 69 (-82.03%)
GonnacryA Linux Ransomware
Stars: ✭ 341 (-11.2%)
bonomenBONOMEN - Hunt for Malware Critical Process Impersonation
Stars: ✭ 42 (-89.06%)
WinappdbgWinAppDbg Debugger
Stars: ✭ 338 (-11.98%)
GefGEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging features for exploit developers & reverse engineers ☢
Stars: ✭ 4,197 (+992.97%)
Bold-Falcon毕方智能云沙箱(Bold-Falcon)是一个开源的自动化恶意软件分析系统;方班网络安全综合实验-设计类;
Stars: ✭ 30 (-92.19%)
StoqAn open source framework for enterprise level automated analysis.
Stars: ✭ 352 (-8.33%)