TKazer / IDA-Pro-9.0-SigMaker
Signature maker plugin for IDA 9.0
☆95Updated 3 months ago
Related projects ⓘ
Alternatives and complementary repositories for IDA-Pro-9.0-SigMaker
- IDA Pro plugin AntiXorstr☆103Updated last year
- IDA Pro plugin with a rich set of features: decryption, deobfuscation, patching, lib code recognition and various pseudocode transformati…☆126Updated 2 weeks ago
- IDA plugin that allows connecting to third party Lumina servers☆70Updated last month
- WinLicense key extraction via Intel PIN☆79Updated 7 months ago
- An x86-64 Code Virtualizer☆110Updated last month
- IDA Class Informer plugin for IDA 8.x and 9.x☆187Updated last week
- compile-time control flow obfuscation using mba☆175Updated last year
- A POC to detect the exist of VMProtect 3 protection by search feature watermark.☆76Updated 11 months ago
- Using Windows' own bootloader as a shim to bypass Secure Boot☆142Updated 4 months ago
- IDA Plugin that fills in missing indirect CALL & JMP target information☆115Updated last year
- Makes IDA (most versions) to crash upon opening it.☆64Updated 2 months ago
- Easy-to-use IDA plugin for code emulation☆25Updated 6 months ago
- Titan is a VMProtect devirtualizer☆41Updated last year
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆115Updated 2 months ago
- ☆118Updated last year
- VMProtect, VMP, Devirter, 3,5☆104Updated last year
- Forked LLVM focused on MSVC Compatibility. This version is designed for windows users☆75Updated last month
- An IDA pro plugin to display user-added comments in disassembly and pseudocode views.☆74Updated last year
- Ida pro plugin. The antiVM aims to quickly identify anti-virtual machine and anti-sandbox behavior. This can speed up malware analysis.☆37Updated 2 years ago
- Bypassing PatchGuard on modern x64 systems☆245Updated last year
- 整合Pluto-Obfuscator和goron部分混淆,移植到LLVM-16.0.x,使用NewPassManager☆113Updated last year
- A devirtualization engine for Themida.☆91Updated 8 months ago
- Symbol Recovery Tool for Nuitka Binaries☆40Updated 4 months ago
- Achieve arbitrary kernel read/writes/function calling in Hypervisor-Protected Code Integrity (HVCI) protected environments calling withou…☆178Updated 3 weeks ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆226Updated 3 months ago
- Detects virtual machines and malware analysis environments☆115Updated 2 years ago
- Deobfuscation via optimization with usage of LLVM IR and parsing assembly.☆404Updated this week
- Example of reading process memory through kernel special APC☆98Updated last year
- Automatically identify and extract potential anti-debugging techniques used by malware.☆132Updated last week
- SMM driver/rootkit for platform memory access with R3 <-> R0 <-> R-2 communication.☆67Updated last month