digitalsleuth / autoit-extractor
AutoIt Extractor transferred to GitHub
☆44Updated 2 years ago
Alternatives and similar repositories for autoit-extractor
Users that are interested in autoit-extractor are comparing it to the libraries listed below
Sorting:
- Small tool to convert beteween the PE alignments (raw and virtual).☆87Updated 2 years ago
- myAut2Exe - The Open Source AutoIT Script Decompiler☆79Updated 7 years ago
- ConfuserEx2 String Decryptor & Full Deobfuscation Guide☆78Updated 9 months ago
- DSE bypass using a leaked cert and adjusting the current clock.☆150Updated 2 years ago
- WinLicense key extraction via Intel PIN☆101Updated last year
- Detects virtual machines and malware analysis environments☆128Updated 2 years ago
- Ghetto user mode emulation of Windows kernel drivers.☆137Updated 6 months ago
- Using Windows' own bootloader as a shim to bypass Secure Boot☆169Updated 9 months ago
- DelphiHelper is a python IDA Pro plugin aiming to help the analysis of x86/x86_64 binaries written in Delphi programming language.☆96Updated last month
- Research on obfuscated licensing APIs / CLIP service in the Windows kernel☆111Updated 2 years ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆245Updated 2 years ago
- Simple tool to extract and decompress embedded resources processed by Fody Costura☆69Updated 10 months ago
- VMProtect, VMP, Devirter, 3,5☆107Updated 2 years ago
- Dump .net assembly from a native loader which uses ClrCreateinstance☆57Updated 2 years ago
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆120Updated 2 years ago
- PE-Dump-Fixer☆105Updated 5 years ago
- Native Python3 bindings for @horsicq's Detect-It-Easy☆68Updated 2 months ago
- JITM is an automated tool to bypass the JIT Hooking protection on a .NET sample.☆52Updated 4 years ago
- QLoader is a PE loader creator that helps you quickly create a non-exe loader for application☆104Updated 7 months ago
- Collect various versions of ntoskrnl files☆52Updated last year
- ☆102Updated 2 years ago
- PE Viewer☆179Updated 3 months ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆279Updated 7 months ago
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆136Updated 8 months ago
- DSE & PG bypass via BYOVD attack☆51Updated last year
- Simple Controlflow Deobfuscator for .NET Reactor 6.7.0.0☆16Updated 3 years ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆279Updated 9 months ago
- Comparing, discussing, and bypassing various techniques for suspending and freezing processes on Windows.☆124Updated 3 years ago
- Integration of Microsoft Warbird with the MSVC compiler☆103Updated last year
- A ProcMon-esque tool for monitoring Windows Kernel Drivers☆58Updated 3 years ago