capa

Malware analyzer

An executable file analysis tool that identifies capabilities and potential malicious behaviors.

The FLARE team's open-source tool to identify capabilities in executable files.

GitHub

5k stars
82 watching
565 forks
Language: Python
last commit: almost 2 years ago
Linked from 4 awesome lists

binary-analysismalware-analysisreverse-engineeringthreat-intelligence

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
mandiant/capa-rulesA standard collection of rules for identifying capabilities in programs549
kevoreilly/capev2A tool to extract configuration and payload from malware by analyzing its behavior in a sandboxed environment.2,043
cyb3rmx/qu1cksc0peAn all-in-one malware analysis tool that provides detailed information about suspicious files and executables.1,348
uppusaikiran/generic-parserAnalyzes malware files to detect suspicious behavior by extracting meta information and features.1
mandiant/flare-fakenet-ngA tool to intercept and analyze network traffic for malware analysis and testing1,824
lprat/static_file_analysisAnalyzes files to detect malware and extract embedded content49
mandiant/speakeasyEmulates specific components of the Windows operating system to analyze malware1,538
jpcertcc/aa-toolsA collection of tools and scripts for analyzing malware, reverse engineering malware, and decrypting encrypted data455
advanced-threat-research/dotdumperAn automated tool for analyzing .NET-based malware samples by logging function calls and dumping memory segments.250
rieck/malheurA tool for automatically analyzing malware behavior and identifying patterns and classes.369
telekom-security/malware_analysisAn analysis repository providing scripts, signatures, and IOCs for detecting and analyzing malware.110
mitrecnd/malchiveA collection of reusable scripts and tools for analyzing malicious software75
glmcdona/process-dumpA tool to extract and analyze malware code from running Windows processes.1,662
zhengmin1989/droidanalyticsAn Android malware analysis system designed to collect and analyze malware signatures using machine learning techniques.29
tomchop/malcomAnalyzes network traffic to detect malware communication and behavior1,158