govcert-ch / ConfuserEx_IDAPython
IDA Python deobfuscation script for ConfuserEx binaries
☆35Updated 2 years ago
Alternatives and similar repositories for ConfuserEx_IDAPython:
Users that are interested in ConfuserEx_IDAPython are comparing it to the libraries listed below
- .NET deobfuscator and unpacker (with a control flow unflattener for DoubleZero added).☆29Updated 2 years ago
- ☆31Updated 2 years ago
- ☆25Updated 2 months ago
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆33Updated last year
- Easy-to-use IDA plugin for code emulation☆26Updated 8 months ago
- devirtualization vmprotect☆61Updated last year
- UnpacMe IDA Byte Search☆27Updated last year
- DelphiHelper is a python IDA Pro plugin aiming to help the analysis of x86/x86_64 binaries written in Delphi programming language.☆51Updated 3 weeks ago
- Các IDA Flirt signatures HTC tạo☆17Updated 2 months ago
- Simple x64dbg plugin to save a full memory dump☆49Updated 2 years ago
- Process Injection without R/W target memory and without creating a remote thread☆19Updated 2 years ago
- C# implementation to produce ROR-13 numeric hash for given function API name☆31Updated 5 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆62Updated last year
- A journal for $6,000 Riot Vanguard bounty.☆59Updated last year
- This repository contains an IDA processor for loading and disassembling compiled yara rules.☆27Updated 2 weeks ago
- ☆22Updated last year
- a small curation of created/stolen scripts for reverse engineering☆12Updated 8 months ago
- Go fastcall analysis for ida decompiler☆31Updated 8 months ago
- Simplifier vmp ultra☆14Updated last year
- A small tool to unmap PE memory dumps.☆11Updated last year
- Extract data of TTD trace file to a minidump☆28Updated last year
- WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware☆45Updated 2 years ago
- A manual PE mapping implementation, aka reflective loader☆18Updated 2 years ago
- IDA plugin for quickly copying disassembly as encoded hex bytes☆59Updated 2 years ago
- ☆15Updated last year
- ☆28Updated 2 years ago
- ☆65Updated last year
- IFL - Interactive Functions List (plugin for Binary Ninja)☆22Updated 6 months ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago
- LLVM obfuscation pass, flattening at the basic block's level and turning each basic block into a dispacher and each instruction into a ne…☆47Updated 3 years ago