Library contains functions commonly used in malware research
Project description
Your bag of handy codez for malware researchers
Content
crypto - couple of wrappers around pycrypto and other (stolen/borrowed) crypto things, so far:
rc2
rc4 + key derivation from m$
rc6
spritz
rsa + pkcs
rolling xor
xor
xtea
serpent
compression - same thing for compression algos so far:
lznt1
lzmat
gzip
aplib
disasm - wrapper around capstone and some additions ;]
malware - codez from malware so far,
isfb
winapi - various things related to windows api,
resolve api name from hash
port of CryptExportKey/CryptImportKey returning object from mlib.crypto
bits - various things that operates on bits
hash - some old school hashes used in api resolving
rnd - random wrappers
memory - useful class for operation on blobs of data, reading bytes,dwords etc
parse - parse all the things! especially m$ crypto keys
License
Do whatever you want with this, Just remember to credit the authors and buy them beers when you meet them;]
Documentation
I wish…
Contact
If you have any questions, hit me up - mak@malwarelab.pl
–
Enjoy and Happy hacking!
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
File details
Details for the file mLib-1.2.4.tar.gz
.
File metadata
- Download URL: mLib-1.2.4.tar.gz
- Upload date:
- Size: 1.0 MB
- Tags: Source
- Uploaded using Trusted Publishing? No
File hashes
Algorithm | Hash digest | |
---|---|---|
SHA256 | 15a38fa52dfd0c700871b8683a57fa7785316c6803cb659d7b02dcdb962b0b77 |
|
MD5 | 37d7b71a7caaeb66dee1a527b94f139a |
|
BLAKE2b-256 | d1c2d0fed7e4c7d847bf564c8abd89d7361b4b0d1f0a67f5eec3a56ebbcc7da9 |