State-of-the-art Malware Triage

  • Automatic & Interactive Analysis
  • Carbon Interactive Disassembler
  • Integrated Sleigh Decompiler
  • Experimental Ghidra Native UI
  • Advanced Hex Editor
  • Memory Analysis
  • Rich Python 3 SDK
  • Windows, OS X, Linux


Visit our blog for demonstrations and to keep up-to-date with the latest improvements.

Follow @cprofiler

Subscribe to our Newsletter!

Our newsletter is primarily directed to users of Cerbero Suite who want to learn more about the product, use cases, discover tips & tricks, be kept up-to-date with future improvements and participate to polls.


Quick tour

  • Automatic Analysis to locate possible threats, privacy issues or interesting information.
  • Interactive Analysis combined with an advanced interface to empower the user to inspect things on his own.
  • Extensive number of supported File Formats: executables, documents, databases, archives, fonts, images, etc.
  • Memory Analysis of raw Windows memory images with detailed inspection capability of the address space of each process.
  • The Carbon Interactive Disassembler with integrated Sleigh decompiler includes support for executable file formats and shellcode. It even supports code inspection in memory images.
  • The experimental Ghidra native UI represents an effort to provide Ghidra with a native C++ UI. The UI works on all supported platforms.
  • Raw Data Analysis performed through C/C++ data types and an advanced hex view.
  • Embedded Files are detected automatically, but can be added manually as well.
  • Powerful Python SDK which exposes core, user interface and file formats.
  • Different kinds of Extensions to customize any behavior and endlessly extend the functionality.
  • Filters to analyze, decrypt, uncompress, hash, disassemble, decode, transform, etc. data streams.
  • A variety of Tools and Plugins such as a JavaScript debugger or an XML indenter.

Advanced Standard FAQ