peframe

Malware analyzer

Analyzes Portable Executable malware and malicious MS Office documents for various suspicious features

PEframe is a open source tool to perform static analysis on Portable Executable malware and malicious MS Office documents.

GitHub

612 stars
53 watching
139 forks
Language: YARA
last commit: over 2 years ago
Linked from 2 awesome lists


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
justicerage/manalyze Analyzes PE files for security vulnerabilities and suspicious behavior 1,024
cyb3rmx/qu1cksc0pe An all-in-one malware analysis tool that provides detailed information about suspicious files and executables. 1,348
struppigel/portex A Java library for static analysis of Portable Executable files with focus on malware detection and PE malformation robustness 499
telekom-security/malware_analysis An analysis repository providing scripts, signatures, and IOCs for detecting and analyzing malware. 110
kevoreilly/capev2 A tool to extract configuration and payload from malware by analyzing its behavior in a sandboxed environment. 2,043
hiddenillusion/analyzepe Analyzes PE files by combining data from various tools to generate a centralized report. 204
phra/pezor A tool for obfuscating and packing executable files to evade antivirus detection and security measures 1,869
dragon-dreamer/binary-valentine An executable file analyzer tool that detects security, configuration, optimization, system, and format issues in Windows executables 18
diogo-fernan/malsub A Python framework that provides an API interface to multiple online services for analyzing malware and threat intelligence 368
trustedsec/pplfaultdumpbof Tools for analyzing PPLFault-related malware behavior on Windows 10 134
mandiant/capa An executable file analysis tool that identifies capabilities and potential malicious behaviors. 4,944
tomchop/malcom Analyzes network traffic to detect malware communication and behavior 1,158
joxeankoret/pyew A command-line tool for analyzing malware and disassembling binary files 386
uppusaikiran/generic-parser Analyzes malware files to detect suspicious behavior by extracting meta information and features. 1