stevemk14ebr / RETools
My reversing tools. Some custom, some not.
☆198Updated last year
Alternatives and similar repositories for RETools:
Users that are interested in RETools are comparing it to the libraries listed below
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆263Updated 7 months ago
- Anti-debugging techniques on a (bad looking) Win32 application.☆239Updated 11 months ago
- Debugger Anti-Detection Benchmark☆310Updated last year
- IDA Pro plugin to make bitfield accesses easier to grep☆231Updated 3 weeks ago
- The best theme for x64dbg!☆82Updated 2 years ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆344Updated 4 months ago
- HashDB API hash lookup plugin for IDA Pro☆308Updated 4 months ago
- x86 PE Mutator☆216Updated 2 years ago
- Demo proof of concept for shadow regions, and implementation of HyperDeceit.☆276Updated last year
- A list of excellent resources for anyone to deepen their understanding with regards to Windows Kernel Exploitation and general low level …☆141Updated 2 years ago
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆149Updated last year
- Analyze patches in a process☆249Updated 3 years ago
- Browse Page Tables on Windows (Page Table Viewer)☆195Updated 2 years ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆271Updated 5 months ago
- ☆198Updated last year
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆202Updated 2 years ago
- Advanced driver monitoring utility.☆206Updated 2 years ago
- A collection of themes based on pastel colors, created for reverse engineers☆139Updated last month
- Collection of hypervisor detections☆220Updated 5 months ago
- IDA Pro plugin which improves work with HexRays decompiler and helps in process of reconstruction structures and classes☆137Updated 5 months ago
- Small tool to convert beteween the PE alignments (raw and virtual).☆85Updated 2 years ago
- compile-time control flow obfuscation using mba☆181Updated last year
- Native code virtualizer for x64 binaries☆469Updated 2 months ago
- Converted phnt (Native API header files from the System Informer project) to IDA TIL, IDC (Hex-Rays).☆128Updated 6 months ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆85Updated last year
- Simple x86/x86_64 instruction level obfuscator based on a basic SBI engine☆264Updated 2 years ago
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆579Updated last month
- X86 Mutation Engine with Portable Executable compatibility.☆479Updated 2 years ago
- Hypervisor with EPT hooking support.☆204Updated last month
- Shell extension for opening executables in IDA☆186Updated 2 years ago