push0ebp / xMalHunter
x64dbg Malware Plugin. Detect malicious materials
☆15Updated 4 years ago
Alternatives and similar repositories for xMalHunter:
Users that are interested in xMalHunter are comparing it to the libraries listed below
- VEH Redirect & VEH Debugger☆23Updated 4 years ago
- Windbg extension that allows you analyze Control Flow Guard map☆35Updated 3 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆29Updated 8 years ago
- idax: IDASDK extension libraries☆19Updated 9 months ago
- Dump PDB Symbols including support for Bochs Debugging Format (with wine support)☆15Updated last year
- Simple x64dbg plugin to show registers on every step.☆16Updated 5 years ago
- NoREpls - Application designed for the purposes of reverse engineering.☆11Updated 6 years ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated last year
- A wrapper for capstone for bearparser☆14Updated 2 years ago
- Kernel-mode file scanner☆18Updated 6 years ago
- Reverse engineering toolkit for exploit/malware analysis☆35Updated 4 years ago
- ☆19Updated 5 years ago
- function identification signatures☆12Updated 4 years ago
- ☆21Updated 3 years ago
- A debugger backend for IDA Pro built on top of of Intel’s PIN framework☆31Updated last year
- dk is a WinDbg extenion for dumping memory data in meaningful and organized ways, it is an enhancement of my previous tokenext project.☆24Updated last year
- Kernel Shellcode to add all privileges in token☆13Updated 8 years ago
- Code Integrity Violation Spotter☆16Updated 10 months ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- Static analysis tools for x86 assembly☆13Updated 8 years ago
- Allows IDA PRO to disassemble x86-64 code (WOW64) in 32-bit database☆25Updated 3 years ago
- unicorn emulator for x64dbg☆33Updated 7 years ago
- Allows you to add breakpoints from IDA (from the graph/text view) to WinDbg easily☆14Updated 6 years ago
- prebuild angr wheels for Windows on x86_64☆14Updated 6 years ago
- Demonstrate the new FileDispositionInfoEx behavior☆14Updated 7 years ago
- findLoop - find possible encryption/decryption or compression/decompression code☆26Updated 6 years ago
- ☆34Updated 3 years ago
- ☆24Updated 9 years ago
- Window Executable file Function tracer using Debugging API☆44Updated 5 years ago
- Triton based symbolic emulator☆16Updated 2 years ago