advanced-threat-research / DotDumperView external linksLinks
An automatic unpacker and logger for DotNet Framework targeting files
☆266Aug 23, 2023Updated 2 years ago
Alternatives and similar repositories for DotDumper
Users that are interested in DotDumper are comparing it to the libraries listed below
Sorting:
- ☆113Sep 10, 2025Updated 5 months ago
- A tool to automatically defeat .NET crackmes based on string equality comparisons☆18Jan 25, 2022Updated 4 years ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆171Feb 5, 2026Updated last week
- String Decryptor for DC.NET Protector (tested on v1.1.0.1)☆11Apr 26, 2021Updated 4 years ago
- Simple tool to extract and decompress embedded resources processed by Fody Costura☆80Jul 10, 2024Updated last year
- de4dot fixed to handle "anti-de4dot" interface adder☆33Jun 6, 2020Updated 5 years ago
- .NET Assembly Dumper☆994Feb 2, 2023Updated 3 years ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆119Apr 8, 2023Updated 2 years ago
- HookDetector.NET is a .NET Library to detect hooks in API functions☆27Nov 21, 2020Updated 5 years ago
- A Deobfuscator for Crypto Obfuscator☆109Apr 17, 2020Updated 5 years ago
- Generates dnSpy themes based on IntelliJ themes☆13Jan 1, 2021Updated 5 years ago
- Disassemble bytecodes as MSIL☆18Jul 31, 2021Updated 4 years ago
- Dynamic unpacker based on PE-sieve☆796Sep 13, 2025Updated 5 months ago
- User-friendly Microsoft Windows Debugger for Malware Analysts.☆204Nov 15, 2022Updated 3 years ago
- SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also conta…☆478Jun 25, 2025Updated 7 months ago
- .NET Devirtualizer for NashaVM☆21Oct 25, 2020Updated 5 years ago
- Utility that tries to generate every single CIL opcode possible in a valid context.☆28Sep 7, 2022Updated 3 years ago
- Packer compressing .net assemblies, (ab)using the PE format for data storage☆177Jan 14, 2023Updated 3 years ago
- StringsAnalyzer is a simple, yet powerful plugin for analyzing string literals in .NET assemblies within dnSpy. It provides a comprehensi…☆81Jan 5, 2025Updated last year
- Unpacker for ILProtector☆30Feb 24, 2023Updated 2 years ago
- Emulates the VirusTotal "vt" YARA module for livehunt rule debugging/testing☆25May 29, 2023Updated 2 years ago
- ☆101Mar 31, 2022Updated 3 years ago
- A Feature Rich Modular Malware Configuration Extraction Utility for MalDuck☆130Nov 25, 2023Updated 2 years ago
- Ghosting-AMSI☆18Apr 30, 2025Updated 9 months ago
- devirtualizer for memevm☆17May 26, 2020Updated 5 years ago
- Generates YARA rules to detect malware using API hashing☆17Mar 16, 2021Updated 4 years ago
- This program can remove Anti De4Dot, Junk Types, Math Protection, Anti Decompiler, Control Flow protections from a .NET assembly.☆146Dec 10, 2024Updated last year
- An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in gen…☆853Feb 2, 2024Updated 2 years ago
- Decrypts strings dynamically, using https://github.com/Washi1337/AsmResolver☆29Sep 9, 2020Updated 5 years ago
- Parse .NET executable files.☆85Jan 31, 2026Updated 2 weeks ago
- A simple to use, gui based program for patching .NET assemblies☆40Jun 5, 2022Updated 3 years ago
- Universal unpacker and fixer for a number of modded ConfuserEx protections☆107Nov 13, 2020Updated 5 years ago
- Anti-virus artifacts. Listing APIs hooked by: Avira, BitDefender, F-Secure, MalwareBytes, Norton, TrendMicro, and WebRoot.☆753Nov 16, 2021Updated 4 years ago
- Inject .NET assemblies into an existing process☆508Jan 19, 2022Updated 4 years ago
- A simple C# executable that invokes an arbitrary method of an arbitrary C# DLL☆139Mar 24, 2024Updated last year
- Easy XOR string encryption for NET based binaries☆140Nov 4, 2023Updated 2 years ago
- ☆126Feb 9, 2026Updated last week
- Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by …☆747Aug 18, 2023Updated 2 years ago
- C code to enable ETW tracing for Dotnet Assemblies☆32Aug 12, 2022Updated 3 years ago