mrexodia / dumpulator
An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in general (sandboxing).
☆750Updated 9 months ago
Related projects ⓘ
Alternatives and complementary repositories for dumpulator
- Time Travel Debugging IDA plugin☆553Updated 4 months ago
- A Pin Tool for tracing API calls etc☆1,301Updated 3 weeks ago
- Dynamic unpacker based on PE-sieve☆657Updated 8 months ago
- Binary Ninja plugin to identify obfuscated code and other interesting code constructs☆575Updated 6 months ago
- An integration for IDA and VS Code which connects both to easily execute and debug IDAPython scripts.☆726Updated last year
- Automatic and platform-independent unpacker for Windows binaries based on emulation☆657Updated last month
- A collection of x64dbg scripts. Feel free to submit a pull request to add your script.☆501Updated 5 months ago
- Official x64dbg plugin for IDA Pro.☆461Updated last month
- An interactive list of plugins for hex-rays' IDA Pro☆381Updated this week
- Unicorn PE is an unicorn based instrumentation project designed to emulate code execution for windows PE files.☆787Updated 6 months ago
- HashDB API hash lookup plugin for IDA Pro☆296Updated last month
- A private Lumina server for IDA Pro☆932Updated 2 weeks ago
- Linker/Compiler/Tool detector for Windows, Linux and MacOS.☆526Updated this week
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆548Updated last month
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,115Updated 7 months ago
- A curated list of IDA x64DBG, Ghidra and OllyDBG plugins.☆1,279Updated 5 months ago
- PDBRipper is a utility for extract an information from PDB-files.☆801Updated this week
- Assortment of hashing algorithms used in malware☆334Updated 5 months ago
- gooMBA is a Hex-Rays Decompiler plugin to simplify Mixed Boolean-Arithmetic (MBA) expressions☆581Updated last year
- Obfuscate specific windows apis with different apis☆982Updated 3 years ago
- A Binary Genetic Traits Lexer Framework☆394Updated 11 months ago
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl☆1,117Updated 2 weeks ago
- A dynamic VMP dumper and import fixer, powered by VTIL.☆1,154Updated 4 years ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆326Updated 3 weeks ago
- IDAPython tool for creating automatic C++ virtual tables in IDA Pro☆1,273Updated 3 years ago
- Karta - source code assisted fast binary matching plugin for IDA☆864Updated last year
- The FLARE team's open-source extension to add Python 3 scripting to Ghidra.☆698Updated 6 months ago
- VirtualKD-Redux - A revival and modernization of VirtualKD☆820Updated 4 months ago
- A Trace Explorer for Reverse Engineers☆1,328Updated last year