Big5-sec / pcode2code
a vba pcode decompiler based on pcodedmp
☆109Updated 3 years ago
Alternatives and similar repositories for pcode2code
Users that are interested in pcode2code are comparing it to the libraries listed below
Sorting:
- ☆105Updated last year
- Robust Automated Malware Unpacker☆84Updated 2 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆75Updated 10 years ago
- LERN GHIDRA☆89Updated 2 years ago
- An IDA Pro extension for easier (malware) reverse engineering☆114Updated 2 years ago
- Automatically rebuild Import Address Table for dumped PE file. With python bindings!☆119Updated 6 years ago
- Parsers for custom malware formats ("Funky malware formats")☆96Updated 3 years ago
- A tool for detecting VBA stomping.☆100Updated 2 years ago
- Capa analysis importer for Ghidra.☆61Updated 4 years ago
- IDA python plugin to scan binary with Yara rules☆172Updated last year
- Go Lang Portable Executable Parser☆39Updated 4 years ago
- FileInsight-plugins: decoding toolbox of McAfee FileInsight hex editor for malware analysis☆161Updated 5 months ago
- Shellcode emulator written with Unicorn Framework With Process Dump Emulation Environment☆123Updated 4 years ago
- Windows Crypto API compatible decryption/encryption for python☆48Updated 2 years ago
- ☆71Updated last year
- Generating YARA rules based on binary code☆210Updated 3 years ago
- Ghidra scripts such as a RC4 decrypter, Yara search, stack string decoder, etc.☆159Updated 5 years ago
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆182Updated 4 years ago
- Symbol hash for ELF files☆110Updated 3 years ago
- Parse .NET executable files.☆76Updated 3 months ago
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆249Updated 2 years ago
- Malware dynamic instrumentation tool based on frida framework☆105Updated 4 years ago
- Analyses in IDA/Hex-Rays☆81Updated 2 years ago
- A simple C# executable that invokes an arbitrary method of an arbitrary C# DLL☆135Updated last year
- Debug Child Process Tool (auto attach)☆286Updated last year
- malware analysis scripts for Ghidra☆79Updated last year
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆165Updated last month
- ☆110Updated 4 years ago
- Scripts for disassembling VBScript p-code in the memory to aid in exploits analysis☆85Updated 2 years ago
- API Logger for Windows Executables☆78Updated 4 years ago