pgarba / UniPE
UNIPE - A small framwork to execute PE files with UniCorn
☆45Updated 7 years ago
Alternatives and similar repositories for UniPE:
Users that are interested in UniPE are comparing it to the libraries listed below
- Analyze PatchGuard☆54Updated 6 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Updated 4 years ago
- Tiny dynamic binary rewriter fox x86.☆48Updated 2 years ago
- This is a VmProtect integrated debugger, that will essentially allow you to disasm and debug vmp partially virtualized functions at the v…☆45Updated 8 years ago
- VMProtect analysis script☆52Updated 4 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆35Updated 7 months ago
- just an lite AntiRootkit for interesting☆23Updated 9 years ago
- ☆34Updated 4 years ago
- This repo contains the tests and results that were done during the research of SATURN☆38Updated 4 years ago
- unicorn emulator for x64dbg☆31Updated 7 years ago
- VMX intrinsics plugin for Hex-Rays decompiler☆70Updated 5 years ago
- IDA Pro plugin to enhance the 'g' keyboard shortcut☆42Updated last year
- ☆27Updated 6 years ago
- ☆27Updated 5 years ago
- enable libemu run pe file and add some good modify☆14Updated 6 years ago
- Lifting from native architecture to VTIL. (WIP)☆74Updated 3 years ago
- ☆24Updated 8 years ago
- Sample x64dbg plugin to scan the stack during tracing.☆14Updated 8 years ago
- Lightweight x86 and x64 instructions disassembler☆31Updated 6 years ago
- Intermediate x86 instruction representation for use in obfuscation/deobfuscation.☆52Updated 8 years ago
- x64dbg plugin - AttachHelper☆21Updated 8 years ago
- Using Zydis and LLVM to lift unsupported instructions to LLVM-IR☆28Updated 3 years ago
- Symbolic expression simplifier used across VTIL toolchain. Moved into -->☆24Updated 4 years ago
- POC of sysenter x64 LSTAR MSR hook☆38Updated 10 years ago
- IDA plugin to explore and browse tags☆53Updated 5 years ago
- Tools made for my Hyper-V blog series @ https://foxhex0ne.blogspot.com/☆55Updated 4 years ago
- A pykd maintenance fork☆39Updated this week
- Binary Ninja plugin for automating VMProtect analysis☆58Updated 2 years ago
- A debugger backend for IDA Pro built on top of of Intel’s PIN framework☆32Updated last year
- IDA-names automatically renames pseudocode windows with the current function name.☆51Updated 2 years ago