ElvisBlue / emotet-deobfuscator
IDA plugin to deobfuscate emotet CFF
☆13Updated 2 years ago
Alternatives and similar repositories for emotet-deobfuscator:
Users that are interested in emotet-deobfuscator are comparing it to the libraries listed below
- Currently proof-of-concept☆16Updated 3 years ago
- .NET deobfuscator and unpacker (with a control flow unflattener for DoubleZero added).☆29Updated 2 years ago
- genpatch is IDA plugin that generates a python script for patching binary☆32Updated last year
- RenameLocalVars is an IDA plugin that renames local variables to something easier to read.☆15Updated last year
- This repository contains an IDA processor for loading and disassembling compiled yara rules.☆27Updated 2 weeks ago
- ☆25Updated 2 months ago
- Extract data of TTD trace file to a minidump☆28Updated last year
- Obfuscat is a tool and framework for obfuscation with predictable size and runtime overhead.☆34Updated last year
- IDA Python deobfuscation script for ConfuserEx binaries☆35Updated 2 years ago
- idax: IDASDK extension libraries☆18Updated 5 months ago
- Các IDA Flirt signatures HTC tạo☆17Updated 2 months ago
- EDR PoC WIP LLC☆10Updated 11 months ago
- Writeup and scripts for the 2021 malwarebytes crackme☆10Updated 3 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- A small tool to unmap PE memory dumps.☆11Updated last year
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆33Updated last year
- Custom instruction length for hex-rays☆17Updated 2 weeks ago
- Simplifier vmp ultra☆14Updated last year
- Code Integrity Violation Spotter☆17Updated 7 months ago
- Các IDC và IDAPython scripts nhỏ, có ích trong quá trình dùng IDA☆10Updated last year
- Collection of IDA helpers☆15Updated 2 years ago
- ☆17Updated 2 years ago
- Portable & Custmizable Windows Defender☆11Updated 3 years ago
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆18Updated 3 months ago
- Neutralize KEPServerEX anti-debugging techniques☆31Updated last year
- ☆26Updated 2 months ago
- ☆12Updated 2 years ago
- ☆15Updated last year
- scripting IDA like a Pro☆23Updated 4 years ago