PEStudio – Malware Initial Assessment Tool

PEStudio tool to spot malicious and suspicious artifacts in order to ease and accelerate Malware Initial Assessment.

VolatilityBot – Automated Memory Analyzer

VolatilityBot is an automation tool for researchers cuts all the guesswork and manual tasks out of the binary extraction phase, or to help the investigator in the first steps of performing a memory analysis investigation.

FakeNet-NG – Next Generation Dynamic Network Analysis Tool

FakeNet-NG is a next generation dynamic network analysis tool for malware analysts and penetration testers. It is open source and designed for the latest versions of Windows. FakeNet-NG is based on the excellent Fakenet tool developed by Andrew Honig and

sems – Sandbox and Virtual Machine Detection Tool

sems is a good tool that can be used by malware researchers to verify if the existing virtual environment detected by malwares.

Invoice Spam Campaign Drop Banking Trojan

TrendMicro is alerting of a new malware called TROJ_WERDLOD. This is a Trojan horse that is targeting users in Japan. The malware was firstly seen last December 2014 and infected more than 400 machines. This malware is very interesting that

Asgard – PHP Malware Scanner

When hackers compromise a website they usually implement a backdoor or a malicious script this to infect visitors and spread the malware or having a point of access on the vulnerable website for the future. If you are looking to

PortEx- Java Library for Static Analysis of PE File

PortEx is a Java library for static malware analysis of Portable Executable files. Its focus is on PE malformation robustness, and anomaly detection. PortEx is written in Java and Scala, and targeted at Java applications. some of the features are: