Dorothy2 Logo

Dorothy2

0
Free
Visit Website

Dorothy2 is a malware/botnet analysis framework written in Ruby. It offers a very flexible modular environment for suspicious binary analysis, interactive investigation framework with a focus on network analysis, and the ability to recognize new spawned processes by comparing them with a baseline. It also utilizes pre-configured analysis profiles for detailed analysis.

FEATURES

ALTERNATIVES

Tplmap is a tool for detecting and exploiting server-side template injection vulnerabilities.

Tool for decompressing malware samples to run Yara rules against them.

A file analysis framework that automates the evaluation of files by running a suite of tools and aggregating the output.

A tool for injecting and loading executables with a focus on stealth techniques.

Dynamic binary analysis library with various analysis and emulation capabilities.

A PowerShell module for interacting with VirusTotal to analyze suspicious files and URLs.

A tool for signature analysis of RTF files to detect potentially unique parts and malicious documents.

Valkyrie is a sophisticated file verdict system that enhances malware detection through behavioral analysis and extensive file feature examination.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved