PyaraScanner Logo

PyaraScanner

0
Free
Visit Website

A multithreaded many-rules to many-files YARA scanner for incident response or malware zoos. Prerequisites: YARA installed and Python 3.0-3.5 with the Yara-Python package. Yara-Python requires Microsoft Visual C++ Build Tools available under 'Build Tools for Visual Studio 2017' and the Yara binaries. Alternatively, you can download an easy installer which should download everything you need for your version of Python (only supports up to Python 3.5). To run with default settings, just specify a folder for .yar rules and a starting point for files to scan. All directories for both inputs are scanned recursively.

FEATURES

ALTERNATIVES

A script to detect and remove Canary Tokens with simple signature-based detections.

A command line utility for searching and downloading exploits

Binwalk is a tool for analyzing, reverse engineering, and extracting firmware images with security and Python 2.7 deprecation notices.

A collaborative malware analysis framework with various features for automated analysis tasks.

A backend agnostic debugger frontend for debugging binaries without source code access.

A powerful tool for detecting and identifying malware using a rule-based system.

A tool for reverse engineering Android apk files.

UDcide provides an alternative approach to dealing with Android malware by targeting specific behaviors for removal.

PINNED