Coldzer0 / CmulatorLinks
Cmulator is ( x86 - x64 ) Scriptable Reverse Engineering Sandbox Emulator for shellcode and PE binaries . Based on Unicorn & Zydis Engine & javascript
☆301Updated 3 years ago
Alternatives and similar repositories for Cmulator
Users that are interested in Cmulator are comparing it to the libraries listed below
Sorting:
- IDA Python Script to Get All function names from Event Constructor (VCL)☆170Updated 6 months ago
- Debug Child Process Tool (auto attach)☆312Updated 2 years ago
- idenLib - Library Function Identification [This project is not maintained anymore]☆395Updated 6 years ago
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆184Updated 5 years ago
- Persistent IAT hooking application - based on bearparser☆263Updated 3 years ago
- ☆151Updated this week
- Plugin for x64dbg Linker/Compiler/Tool detector.☆169Updated this week
- An IDA Plugin that help analyzing module that use COM☆229Updated 2 months ago
- Static unpacker for FinSpy VM☆103Updated 4 years ago
- Toy scripts for playing with WinDbg JS API☆242Updated last year
- Code Deobfuscator☆55Updated 9 years ago
- MASM32 Code collection for reverse engineers☆157Updated 2 months ago
- ☆230Updated 3 years ago
- An IDA Pro extension for easier (malware) reverse engineering☆115Updated 3 years ago
- Reverse engineering tutorials☆158Updated 8 years ago
- IFL - Interactive Functions List (plugin for IDA Pro)☆484Updated 3 weeks ago
- MemoryRanger protects kernel data and code by running drivers and hosting data in isolated kernel enclaves using VT-x and EPT features. M…☆230Updated 5 years ago
- Yara rule making tool (IDA Pro & Binary Ninja & Cutter & Ghidra Plugin)☆241Updated last year
- Tool for viewing and analyzing execution traces☆313Updated 4 years ago
- Kernel Detective☆150Updated 3 years ago
- Hyper-V Research is trendy now☆190Updated last year
- Extract labels from IDA, Ghidra, Binary Ninja, and Relyze files and export x64dbg database. Including radare2 main address.☆113Updated 2 years ago
- CFB is a ProcMon-style tool designed to assist capturing IRPs sent to Windows drivers.☆332Updated last year
- x64dbg plugin to set breakpoints automatically to Win32/64 APIs☆180Updated 7 years ago
- A plugin based on IDAPython for a functional DWIM interface. Current development against most recent IDA is in the "persistence-refactor"…☆328Updated 3 months ago
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆219Updated 3 years ago
- BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)☆128Updated 3 years ago
- Windows Kernel Programming☆132Updated 5 years ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆211Updated 2 months ago
- x64dbg plugin to check security settings☆139Updated 8 years ago