stevemk14ebr / RETools
My reversing tools. Some custom, some not.
☆201Updated last year
Alternatives and similar repositories for RETools:
Users that are interested in RETools are comparing it to the libraries listed below
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆272Updated 8 months ago
- Debugger Anti-Detection Benchmark☆327Updated last year
- IDA Pro plugin to make bitfield accesses easier to grep☆232Updated 2 months ago
- HashDB API hash lookup plugin for IDA Pro☆311Updated 6 months ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆354Updated 5 months ago
- Demo proof of concept for shadow regions, and implementation of HyperDeceit.☆275Updated last year
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆277Updated 6 months ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆86Updated last year
- ☆199Updated last year
- Browse Page Tables on Windows (Page Table Viewer)☆197Updated 3 years ago
- Analyze patches in a process☆251Updated 3 years ago
- Anti-debugging techniques on a (bad looking) Win32 application.☆240Updated last year
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆142Updated 2 years ago
- Shell extension for opening executables in IDA☆186Updated 2 years ago
- The best theme for x64dbg!☆83Updated 2 years ago
- IDA Pro plugin to manage classes☆320Updated 7 months ago
- IDA Pro plugin which improves work with HexRays decompiler and helps in process of reconstruction structures and classes☆140Updated 6 months ago
- Small tool to convert beteween the PE alignments (raw and virtual).☆87Updated 2 years ago
- Collection of hypervisor detections☆232Updated 6 months ago
- LLVM based static binary analysis framework☆237Updated 2 weeks ago
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆151Updated last year
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆204Updated 2 years ago
- An x86-64 Code Virtualizer☆252Updated 6 months ago
- Advanced driver monitoring utility.☆207Updated 2 years ago
- x86 PE Mutator☆215Updated 2 years ago
- A collection of themes based on pastel colors, created for reverse engineers☆143Updated last week
- Universal x86/x64 VMProtect 2.0-3.X Import fixer☆5Updated 3 years ago
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆134Updated 7 months ago
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆588Updated 2 months ago
- X86 Mutation Engine with Portable Executable compatibility.☆483Updated 2 years ago