ScyllaHide by x64dbg

Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide

updated at April 28, 2024, 2:33 p.m.

C++

87 +0

3,217 +10

407 +3

GitHub
al-khaser by LordNoteworthy

Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.

updated at April 28, 2024, 9:34 a.m.

C++

237 +0

5,527 +7

1,134 +0

GitHub
bulk_extractor by simsong

This is the development tree. Production downloads are at:

updated at April 28, 2024, 7:28 a.m.

C++

74 +0

1,001 +3

180 +0

GitHub
IDR by crypto2011

Interactive Delphi Reconstructor

updated at April 27, 2024, 10:30 p.m.

C++

80 +0

892 +4

213 +0

GitHub
Nauz-File-Detector by horsicq

Linker/Compiler/Tool detector for Windows, Linux and MacOS.

updated at April 27, 2024, 7:50 p.m.

C++

26 +0

486 +2

80 +0

GitHub
Scylla by NtQuery

Imports Reconstructor

updated at April 27, 2024, 2:10 p.m.

C++

55 +0

1,018 +4

217 +0

GitHub
pharos by cmu-sei

Automated static analysis tools for binary programs

updated at April 27, 2024, 11:21 a.m.

C++

77 +0

1,483 +2

183 +0

GitHub
drakvuf by tklengyel

DRAKVUF Black-box Binary Analysis

updated at April 27, 2024, 3:47 a.m.

C++

61 +0

1,005 +2

244 +0

GitHub
wdbgark by swwwolf

WinDBG Anti-RootKit Extension

updated at April 25, 2024, 6:16 a.m.

C++

61 +0

602 +1

176 +0

GitHub
AChoir by OMENScan

Windows Live Artifacts Acquisition Script

updated at April 24, 2024, 5:25 p.m.

C++

14 +0

175 -1

31 +0

GitHub
PackerAttacker by BromiumLabs

C++ application that uses memory and code hooks to detect packers

updated at April 23, 2024, 10:34 p.m.

C++

30 +0

261 -1

72 +0

GitHub
hashdeep by jessek

None

updated at April 23, 2024, 10:24 p.m.

C++

61 +0

685 -1

129 +0

GitHub
nsrllookup by rjhansen

Checks with NSRL RDS servers looking for for hash matches

updated at April 12, 2024, 8:49 p.m.

C++

13 +0

107 +0

10 +0

GitHub
bluepill by season-lab

BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)

updated at Jan. 27, 2024, 5:39 a.m.

C++

9 +0

112 +0

25 +0

GitHub
broyara by hempnall

integrating bro into yara

updated at Nov. 22, 2022, 7:44 a.m.

C++

5 +0

31 +0

5 +0

GitHub