Pinned Repositories
DC3-MWCP
Dragodis
Dragodis is a Python framework which allows for the creation of universal disassembler scripts.
flare-ida
IDA Pro utilities from FLARE team
kordesii
LnkParse3
Windows Shortcut file (LNK) parser
oletools
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
rugosa
The next generation of kordesii. This is a library (not a framework) for managing emulation and provides utilities for interfacing with decompiled malware samples using dragodis.
oletools
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
LIEF
LIEF - Library to Instrument Executable Formats (C++, Python, Rust)
yara-x
A rewrite of YARA in Rust.
ddash-ct's Repositories
ddash-ct/DC3-MWCP
ddash-ct/Dragodis
Dragodis is a Python framework which allows for the creation of universal disassembler scripts.
ddash-ct/flare-ida
IDA Pro utilities from FLARE team
ddash-ct/kordesii
ddash-ct/LnkParse3
Windows Shortcut file (LNK) parser
ddash-ct/oletools
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
ddash-ct/rugosa
The next generation of kordesii. This is a library (not a framework) for managing emulation and provides utilities for interfacing with decompiled malware samples using dragodis.