sophoslabs / emotet_unflatten_pocLinks
Modified python version of Rolf Rolles' https://github.com/RolfRolles/HexRaysDeob to unflatten Emotet'S Control Flow Flattening
☆27Updated 3 years ago
Alternatives and similar repositories for emotet_unflatten_poc
Users that are interested in emotet_unflatten_poc are comparing it to the libraries listed below
Sorting:
- IDA Python3 Plugin to make your RE life easier. Trace execution and save code/memory for detailed exploration.☆32Updated last year
- Emulation Wrapper Solution is a IDA Pro plugin that brings emulator capacities to provide features such as debugging an mocking.☆23Updated 2 years ago
- An IDA plugin which demangles Rust function names☆34Updated 2 years ago
- IDA strike-out: A Hex-Rays decompiler plugin to patch the Ctree☆124Updated last month
- Tool that automates some useful structure routines in IDA PRO☆83Updated last year
- Go fastcall analysis for ida decompiler☆44Updated 6 months ago
- Binary Ninja plugin to clean up some common obfuscation techniques.☆21Updated 5 years ago
- How to setup Pycharm to run scripts in IDA using the Run menu (or a keybind)☆42Updated last year
- Hex-Rays microcode API plugin for breaking an obfuscating compiler☆84Updated 6 years ago
- breaking decompilers☆55Updated 7 months ago
- IDAPatternSearch adds a capability of finding functions according to bit-patterns into the well-known IDA Pro disassembler based on Ghidr…☆65Updated 4 years ago
- Control-flow-flattening and string deobfuscator☆157Updated 4 years ago
- An IDA plugin that can be used to partially synchronize IDBs between different users reversing the same binaries☆136Updated 11 months ago
- idax: IDASDK extension libraries☆21Updated 2 months ago
- IDA plugin that displays the P-code for the current function☆72Updated last month
- ☆62Updated 3 years ago
- Hex-Rays Block Highlighter plugin for IDA to highlight if/for/do/switch/while blocks☆62Updated 3 years ago
- User-friendly reference finder in IDA☆39Updated 3 years ago
- Alternative API for IDA / Hex-Rays☆75Updated 2 years ago
- IDA Pro plugin that displays all comments in a database☆72Updated 2 weeks ago
- ☆25Updated 7 months ago
- Efficient Deobfuscation of Linear Mixed Boolean-Arithmetic Expressions☆179Updated 2 years ago
- Comment rebasing for IDA Pro☆26Updated 5 years ago
- Easy-to-use IDA plugin for code emulation☆47Updated 3 weeks ago
- llvm powered deobfuscation of a vm-based protection☆44Updated 8 months ago
- ☆64Updated 4 months ago
- Greybox Synthesizer geared for deobfuscation of assembly instructions.☆163Updated 10 months ago
- LLVM obfuscation pass, flattening at the basic block's level and turning each basic block into a dispacher and each instruction into a ne…☆49Updated 4 years ago
- Small programs and scripts that do not require their own repositories☆139Updated 3 years ago
- Unofficial YARA IDA Pro plugin, along with an unparalleled crypto/hash/compression rule set based on Luigi Auriemma's signsrch signatures…☆82Updated 2 months ago