All Projects → r2yara → Similar Projects or Alternatives

467 Open source projects that are alternatives of or similar to r2yara

Malware Ioc
Indicators of Compromises (IOC) of our various investigations
Stars: ✭ 955 (+3083.33%)
Mutual labels:  malware, yara
yara
Malice Yara Plugin
Stars: ✭ 27 (-10%)
Mutual labels:  malware, yara
r2wiki
Radare 2 wiki
Stars: ✭ 89 (+196.67%)
Mutual labels:  radare2, r2
Multiscanner
Modular file scanning/analysis framework
Stars: ✭ 494 (+1546.67%)
Mutual labels:  malware, yara
freki
🐺 Malware analysis platform
Stars: ✭ 327 (+990%)
Mutual labels:  malware, yara
Freki
🐺 Malware analysis platform
Stars: ✭ 285 (+850%)
Mutual labels:  malware, yara
Php Malware Finder
Detect potentially malicious PHP files
Stars: ✭ 1,245 (+4050%)
Mutual labels:  malware, yara
Yargen
yarGen is a generator for YARA rules
Stars: ✭ 795 (+2550%)
Mutual labels:  malware, yara
binlex
A Binary Genetic Traits Lexer Framework
Stars: ✭ 303 (+910%)
Mutual labels:  malware, yara
apooxml
Generate YARA rules for OOXML documents.
Stars: ✭ 34 (+13.33%)
Mutual labels:  malware, yara
S1EM
This project is a SIEM with SIRP and Threat Intel, all in one.
Stars: ✭ 270 (+800%)
Mutual labels:  malware, yara
Pecli
CLI tool to analyze PE files
Stars: ✭ 46 (+53.33%)
Mutual labels:  malware, yara
Manalyze
A static analyzer for PE executables.
Stars: ✭ 701 (+2236.67%)
Mutual labels:  malware, yara
Mquery
YARA malware query accelerator (web frontend)
Stars: ✭ 264 (+780%)
Mutual labels:  malware, yara
Yobi
Yara Based Detection Engine for web browsers
Stars: ✭ 39 (+30%)
Mutual labels:  malware, yara
Ursadb
Trigram database written in C++, suited for malware indexing
Stars: ✭ 72 (+140%)
Mutual labels:  malware, yara
Pepper
An open source script to perform malware static analysis on Portable Executable
Stars: ✭ 250 (+733.33%)
Mutual labels:  malware, yara
file-less-ransomware-demo
Demonstrate about file-less malware approach using JavaScript
Stars: ✭ 46 (+53.33%)
Mutual labels:  malware
libdemangle
A simple library focusing on demangling symbols for different programing languages
Stars: ✭ 34 (+13.33%)
Mutual labels:  radare2
malware-persistence
Collection of malware persistence and hunting information. Be a persistent persistence hunter!
Stars: ✭ 109 (+263.33%)
Mutual labels:  malware
bluepill
BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)
Stars: ✭ 94 (+213.33%)
Mutual labels:  malware
ThreatPursuit-VM
Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysis and hunting designed for intel and malware analysts as well as threat hunters to get up and running quickly.
Stars: ✭ 1,033 (+3343.33%)
Mutual labels:  malware
Batch-Antivirus
Batch Antivirus, a powerful antivirus suite written in batch with real-time protection and heuristical scanning.
Stars: ✭ 26 (-13.33%)
Mutual labels:  malware
hayabusa
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
Stars: ✭ 908 (+2926.67%)
Mutual labels:  hunting
DGA-Detection
DGA Domain Detection using Bigram Frequency Analysis
Stars: ✭ 47 (+56.67%)
Mutual labels:  malware
trolo
trolo - an easy to use script for generating Payloads that bypasses antivirus
Stars: ✭ 45 (+50%)
Mutual labels:  malware
Wireguard-DNScrypt-VPN-Server
Fast setup wireguard server script, with dnscrypt and adblocking, maleware blocking, more blocking if you need. Use case eg. always on vpn and adblocking on ios or android, and be more secured in unknown networks.
Stars: ✭ 48 (+60%)
Mutual labels:  malware
Scuffed Low Level Stash
Stash for Binary Exploitation and Reverse Engineering Resources
Stars: ✭ 83 (+176.67%)
Mutual labels:  radare2
ConTroll Remote Access Trojan
Created a VERY SIMPLE remote access Trojan that will establish administrative control over any windows machine it compromises.
Stars: ✭ 69 (+130%)
Mutual labels:  malware
vim-syntax-yara
A Vim syntax-highlighting file for YARA rules
Stars: ✭ 26 (-13.33%)
Mutual labels:  yara
yara-forensics
Set of Yara rules for finding files using magics headers
Stars: ✭ 115 (+283.33%)
Mutual labels:  yara
macOS-Security-Updates
Notifies the user when macOS Security components like Gatekeeper and XProtect have been updated
Stars: ✭ 53 (+76.67%)
Mutual labels:  malware
Defeat-Defender-V1.2
Powerful batch script to dismantle complete windows defender protection and even bypass tamper protection ..Disable Windows-Defender Permanently....Hack windows. POC
Stars: ✭ 885 (+2850%)
Mutual labels:  malware
yara-parser
Tools for parsing rulesets using the exact grammar as YARA. Written in Go.
Stars: ✭ 69 (+130%)
Mutual labels:  yara
ghidra-r2web
Ghidra plugin to start an r2 webserver to let r2 interact with it
Stars: ✭ 38 (+26.67%)
Mutual labels:  radare2
Malware-Sample-Sources
Malware Sample Sources
Stars: ✭ 214 (+613.33%)
Mutual labels:  malware
cerberus research
Research tools for analysing Cerberus banking trojan.
Stars: ✭ 110 (+266.67%)
Mutual labels:  malware
r2dumpbin
A radare2 Python script to dump a raw IA32 binary to an NASM source file
Stars: ✭ 22 (-26.67%)
Mutual labels:  radare2
Anti-Debugging
A collection of c++ programs that demonstrate common ways to detect the presence of an attached debugger.
Stars: ✭ 297 (+890%)
Mutual labels:  malware
who and what to follow
Who and what to follow in the world of cyber security
Stars: ✭ 124 (+313.33%)
Mutual labels:  malware
matrix
mirror of https://mypdns.org/my-privacy-dns/matrix as it is obviously no longer safe to do Girhub nor have we no longer any trust in them. See https://mypdns.org/my-privacy-dns/porn-records/-/issues/1347
Stars: ✭ 32 (+6.67%)
Mutual labels:  malware
qt-rat
Remote administration tool with Qt5
Stars: ✭ 37 (+23.33%)
Mutual labels:  malware
maskedkitty
🙀 Icon Changer, File Pumper & Extension Spoofer - Quickly Modify Executable Files
Stars: ✭ 39 (+30%)
Mutual labels:  malware
flashmingo
Automatic analysis of SWF files based on some heuristics. Extensible via plugins.
Stars: ✭ 117 (+290%)
Mutual labels:  malware
The-MALWARE-Repo
A repository full of malware samples.
Stars: ✭ 380 (+1166.67%)
Mutual labels:  malware
Guanciale
🥓 Grab info needed by Carbonara from executables and disassemblers databases
Stars: ✭ 14 (-53.33%)
Mutual labels:  radare2
showstopper
ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solutions that clash with standard anti-debug methods.
Stars: ✭ 132 (+340%)
Mutual labels:  malware
threat-intel
Signatures and IoCs from public Volexity blog posts.
Stars: ✭ 130 (+333.33%)
Mutual labels:  yara
TS-453Be
Ubuntu on QNAP TS-453Be
Stars: ✭ 48 (+60%)
Mutual labels:  radare2
moneta
Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs
Stars: ✭ 384 (+1180%)
Mutual labels:  malware
sarlacc
SMTP server / sinkhole for collecting spam
Stars: ✭ 42 (+40%)
Mutual labels:  malware
ThePhish
ThePhish: an automated phishing email analysis tool
Stars: ✭ 676 (+2153.33%)
Mutual labels:  malware
ImHex-Patterns
Hex patterns, include patterns and magic files for the use with the ImHex Hex Editor
Stars: ✭ 192 (+540%)
Mutual labels:  yara
CEH
Exam Prep for the Ec-council Certified Ethical Hacker 312-50
Stars: ✭ 71 (+136.67%)
Mutual labels:  malware
awesome-executable-packing
A curated list of awesome resources related to executable packing
Stars: ✭ 720 (+2300%)
Mutual labels:  malware
Quiescis
Quescis is a powerful Remote Access Trojan for windows 💻 on C++
Stars: ✭ 56 (+86.67%)
Mutual labels:  malware
ArminC-uBlock-Settings
⚙️ ArminC's settings for uBlock₀ - remove most of the ads, pop-ups and trackers.
Stars: ✭ 24 (-20%)
Mutual labels:  malware
ToxicEye
👽 Program for remote control of windows computers via telegram bot. Written in C#
Stars: ✭ 305 (+916.67%)
Mutual labels:  malware
vx
Virus Exchange (VX) - Collection of malware or assembly code used for "offensive" purposed.
Stars: ✭ 153 (+410%)
Mutual labels:  malware
flashre
Tools to reverse the Toshiba FlashAir SD cards
Stars: ✭ 23 (-23.33%)
Mutual labels:  radare2
1-60 of 467 similar projects