Quark Engine – Android Malware Scoring System

Quark Engine is an open source software for automating analysis of suspicious Android application. To do so it makes use of custom Dalvik Bytecode Loader

Detect-It-Easy (DiE) – Packer Identifier

Detect-It-Easy , or abbreviated “DIE” is a program for determining types of files. “DIE” is a cross-platform application, apart from Windows version there are also available versions for Linux and Mac OS.

PEStudio Version 9.00 – New Release

pestudio is used by Computer Emergency Response Teams and Labs worldwide in order to perform Malware Initial Assessment. Malicious software often attempts to hide its intents in order to evade early detection and static analysis. In doing so, it often

Malwoverview – Malware Initial Triage Tool

Malwoverview is a first response tool to perform an initial and quick triage in a directory containing malware samples, specific malware sample, suspect URL and domains.

PE-sieve – Tool to Detect Malware Running on System

PE-sieve is a light-weight tool that helps to detect malware running on the system, as well as to collect the potentially malicious material for further analysis. This tool is intended to help malware analysts, malware hunters, and incident responders in

RetDec – Machine-code Decompiler Based on LLVM

RetDec is a retargetable machine-code decompiler based on LLVM. The decompiler is not limited to any particular target architecture, operating system

CAPE – Malware Configuration And Payload Extraction

CAPE is a malware sandbox. It is derived from Cuckoo and is designed to automate the process of malware analysis with the goal of extracting payloads and configuration from malware.