An automatic unpacker and logger for DotNet Framework targeting files
☆264Aug 23, 2023Updated 2 years ago
Alternatives and similar repositories for DotDumper
Users that are interested in DotDumper are comparing it to the libraries listed below
Sorting:
- ☆115Feb 13, 2026Updated 3 weeks ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆171Mar 2, 2026Updated last week
- Simple tool to extract and decompress embedded resources processed by Fody Costura☆79Jul 10, 2024Updated last year
- A tool to automatically defeat .NET crackmes based on string equality comparisons☆18Jan 25, 2022Updated 4 years ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆119Apr 8, 2023Updated 2 years ago
- .NET Assembly Dumper☆996Feb 2, 2023Updated 3 years ago
- String Decryptor for DC.NET Protector (tested on v1.1.0.1)☆11Apr 26, 2021Updated 4 years ago
- HookDetector.NET is a .NET Library to detect hooks in API functions☆27Nov 21, 2020Updated 5 years ago
- Disassemble bytecodes as MSIL☆18Jul 31, 2021Updated 4 years ago
- de4dot fixed to handle "anti-de4dot" interface adder☆33Jun 6, 2020Updated 5 years ago
- A Deobfuscator for Crypto Obfuscator☆107Apr 17, 2020Updated 5 years ago
- .NET Devirtualizer for NashaVM☆21Oct 25, 2020Updated 5 years ago
- Generates dnSpy themes based on IntelliJ themes☆14Jan 1, 2021Updated 5 years ago
- Utility that tries to generate every single CIL opcode possible in a valid context.☆28Sep 7, 2022Updated 3 years ago
- Dynamic unpacker based on PE-sieve☆799Sep 13, 2025Updated 5 months ago
- Packer compressing .net assemblies, (ab)using the PE format for data storage☆177Jan 14, 2023Updated 3 years ago
- StringsAnalyzer is a simple, yet powerful plugin for analyzing string literals in .NET assemblies within dnSpy. It provides a comprehensi…☆81Jan 5, 2025Updated last year
- SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also conta…☆479Jun 25, 2025Updated 8 months ago
- Emulates the VirusTotal "vt" YARA module for livehunt rule debugging/testing☆24May 29, 2023Updated 2 years ago
- ☆100Mar 31, 2022Updated 3 years ago
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆131Nov 25, 2023Updated 2 years ago
- Ghosting-AMSI☆18Apr 30, 2025Updated 10 months ago
- devirtualizer for memevm☆17May 26, 2020Updated 5 years ago
- Generates YARA rules to detect malware using API hashing☆17Mar 16, 2021Updated 4 years ago
- User-friendly Microsoft Windows Debugger for Malware Analysts.☆204Nov 15, 2022Updated 3 years ago
- Parse .NET executable files.☆85Jan 31, 2026Updated last month
- A simple to use, gui based program for patching .NET assemblies☆39Jun 5, 2022Updated 3 years ago
- An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in gen…☆856Feb 2, 2024Updated 2 years ago
- Anti-virus artifacts. Listing APIs hooked by: Avira, BitDefender, F-Secure, MalwareBytes, Norton, TrendMicro, and WebRoot.☆754Nov 16, 2021Updated 4 years ago
- Universal unpacker and fixer for a number of modded ConfuserEx protections☆108Nov 13, 2020Updated 5 years ago
- Inject .NET assemblies into an existing process☆507Jan 19, 2022Updated 4 years ago
- A simple C# executable that invokes an arbitrary method of an arbitrary C# DLL☆139Mar 24, 2024Updated last year
- Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by …☆744Aug 18, 2023Updated 2 years ago
- This program can remove Anti De4Dot, Junk Types, Math Protection, Anti Decompiler, Control Flow protections from a .NET assembly.☆147Dec 10, 2024Updated last year
- C code to enable ETW tracing for Dotnet Assemblies☆32Aug 12, 2022Updated 3 years ago
- KoiVM,EazVM,AgileVM Patcher Por "Team Venturi77"☆18Aug 16, 2019Updated 6 years ago
- Deobfuscator for RustemSoft Skater.Net Obfuscator☆15Apr 26, 2020Updated 5 years ago
- A dynamic unpacking tool☆148Sep 17, 2023Updated 2 years ago
- Opens the file from the attached process to be able to debug (might be usefull)☆13Jul 8, 2019Updated 6 years ago