A curated list of awesome malware analysis tools and resources.
Go to file
2015-05-08 22:41:41 -06:00
LICENSE Add CC-BY-4.0 license 2015-05-08 18:16:07 -06:00
README.md Add memory forensics section 2015-05-08 22:41:41 -06:00

Awesome Malware Analysis

A curated list of awesome malware analysis tools and resources. Inspired by awesome-python and awesome-php.


Malware Collection

Anonymizers

Web traffic anonymizers for analysts.

  • Anonymouse.org - A free, web based anonymizer.
  • OpenVPN - VPN software and hosting solutions.
  • Privoxy - An open source proxy server with some privacy features.
  • Tor - The Onion Router, for browsing the web without leaving traces of the client IP.

Honeypots

Trap and collect your own samples.

Malware Corpora

Malware samples collected for analysis.

  • Contagio - A collection of recent malware samples and analyses.

Detection and Classification

Antivirus and other malware identification tools

  • ClamAV - Open source antivirus engine.
  • YARA - Pattern matching tool for analysts.

Online Scanners and Sandboxes

  • Jotti - Free online multi-AV scanner.
  • Malwr - Free analysis with an online Cuckoo Sandbox instance.
  • VirusTotal - Free online analysis of malware samples and URLs

Memory Forensics

  • FindAES - Find AES encryption keys in memory.
  • Rekall - Memory analysis framework, forked from Volatility in 2013.
  • TotalRecall - Script based on Volatility for automating various malware analysis tasks.
  • Volatility - Advanced memory forensics framework.

Miscellaneous

  • REMnux - Linux distribution and docker images for malware reverse engineering and analysis.

Resources

Books

Twitter

Other

Related Awesome Lists

Contributing

Pull requests and issues with suggestions are welcome!