sophoslabs / emotet_unflatten_poc
Modified python version of Rolf Rolles' https://github.com/RolfRolles/HexRaysDeob to unflatten Emotet'S Control Flow Flattening
☆25Updated 3 years ago
Alternatives and similar repositories for emotet_unflatten_poc
Users that are interested in emotet_unflatten_poc are comparing it to the libraries listed below
Sorting:
- Go fastcall analysis for ida decompiler☆33Updated 2 months ago
- Binary Ninja plugin to clean up some common obfuscation techniques.☆20Updated 4 years ago
- Hex-Rays microcode API plugin for breaking an obfuscating compiler☆83Updated 5 years ago
- Emulation Wrapper Solution is a IDA Pro plugin that brings emulator capacities to provide features such as debugging an mocking.☆22Updated last year
- IDA strike-out: A Hex-Rays decompiler plugin to patch the Ctree☆116Updated 8 months ago
- Hex-Rays Block Highlighter plugin for IDA to highlight if/for/do/switch/while blocks☆61Updated 3 years ago
- Alternative API for IDA / Hex-Rays☆74Updated last year
- IDAPatternSearch adds a capability of finding functions according to bit-patterns into the well-known IDA Pro disassembler based on Ghidr…☆63Updated 3 years ago
- IDA plugin displaying the P-Code for the current function☆66Updated last year
- ☆76Updated 3 years ago
- ☆59Updated 3 years ago
- ☆55Updated last month
- Various scripts for the Hexrays decompiler☆94Updated last year
- Analyses in IDA/Hex-Rays☆81Updated 2 years ago
- ☆72Updated 3 years ago
- Small programs and scripts that do not require their own repositories☆138Updated 3 years ago
- PoC for obfuscating the dynamic symbol table injecting a custom Hash Table to do symbol resolution☆29Updated 4 years ago
- Adds a layer on top of IDA Python to make it easier to write scripts☆24Updated this week
- IDA Pro plugin that displays all comments in a database☆68Updated 9 months ago
- TTexplore is a library that performs path exploration on binary code using symbolic execution☆76Updated 2 years ago
- Raw IDA Kernel API for IDAPython☆33Updated 3 years ago
- User-friendly reference finder in IDA☆39Updated 2 years ago
- IDA Python3 Plugin to make your RE life easier. Trace execution and save code/memory for detailed exploration.☆32Updated last year
- Toy LLVM obfuscator pass☆72Updated 3 years ago
- A Go library speaking Hex-Rays IDA lumina protocol☆34Updated last year
- Bump your ida python script automatically!☆24Updated 3 weeks ago
- Easy-to-use IDA plugin for code emulation☆31Updated last year
- nanoMIPS IDA plugin☆67Updated 3 years ago
- PoC for a taint based attack on VMProtect☆108Updated 5 years ago
- llvm powered deobfuscation of a vm-based protection☆35Updated 3 weeks ago