ek0 / hxemuLinks
Triton based symbolic emulator
☆16Updated 2 years ago
Alternatives and similar repositories for hxemu
Users that are interested in hxemu are comparing it to the libraries listed below
Sorting:
- LLVM obfuscation pass, flattening at the basic block's level and turning each basic block into a dispacher and each instruction into a ne…☆47Updated 4 years ago
- Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)☆62Updated 2 years ago
- ☆25Updated 3 months ago
- a code virtualizer based on angr☆30Updated 2 years ago
- Binary Ninja plugin for automating VMProtect analysis☆62Updated 2 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆67Updated 2 years ago
- ☆15Updated 2 years ago
- ☆21Updated 8 years ago
- Disassembler for Zeus VM custom instruction set☆29Updated last year
- Reverse engineered API for Microsoft's Time Travel Debugger☆35Updated last year
- virtualization obfuscator inspired by juhajong/vm-obfuscator☆57Updated 5 years ago
- Simple DLL and client app that work together to hook all the functions in WinHvPlatform.dll in order to provide logging and introspection…☆18Updated 3 years ago
- Implementation of a LLVM Compiler Plugin for C++ Obfuscation☆43Updated 2 years ago
- Bootkits☆18Updated 2 years ago
- WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware☆46Updated 3 years ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆64Updated last year
- A debugger backend for IDA Pro built on top of of Intel’s PIN framework☆33Updated last year
- llvm powered deobfuscation of a vm-based protection☆41Updated 4 months ago
- ☆19Updated 10 months ago
- dk is a WinDbg extenion for dumping memory data in meaningful and organized ways, it is an enhancement of my previous tokenext project.☆24Updated 2 years ago
- vmp2.x devirtualization☆78Updated 10 months ago
- Windows Minidump loader for Ghidra☆29Updated 2 years ago
- genpatch is IDA plugin that generates a python script for patching binary☆36Updated last year
- Hex-Rays microcode API plugin for breaking an obfuscating compiler☆84Updated 6 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)