
Manalyze
Static analyzer for PE executables with plugin-based detection of packers, compilers, suspicious imports, cryptographic constants, and ClamAV…

Static analyzer for PE executables with plugin-based detection of packers, compilers, suspicious imports, cryptographic constants, and ClamAV…

Static binary analysis with Detect It Easy — 100% in your browser, no uploads.

A Binary Genetic Traits Lexer Framework

goLoL is a Windows host scanner with dual support for LOLBAS binaries and LOLDrivers. It lists LOLBAS techniques runnable at your current privilege…

A monthly Windows PE baseline dataset for Cyber security researchers

HashDB API hash lookup plugin for IDA Pro

跨平台密码学工具箱。包含编解码,编码转换,加解密, 哈希,MAC,签名,大数运算,压缩,二维码功能,CTF等功能。

Java library to analyse Portable Executable files with a special focus on malware analysis and PE malformation robustness

Assortment of hashing algorithms used in malware

Graphical interface for PortEx, a Portable Executable and Malware Analysis Library


A small utility to deal with malware embedded hashes.

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Imphash-like calculation on Golang binaries

Hash collisions and their exploitations


A malware analysis and classification tool.