yubie-re / ida-jm-xorstr-decrypt-plugin
Attempts to decrypt JM Xorstr in some x64 binaries
☆52Updated 2 years ago
Alternatives and similar repositories for ida-jm-xorstr-decrypt-plugin:
Users that are interested in ida-jm-xorstr-decrypt-plugin are comparing it to the libraries listed below
- PointerGuard is a proof-of-concept tool used to create 'guarded' pointers which disguise pointer addresses, monitor reads/writes, and pre…☆52Updated 2 years ago
- KDM Is a driver that will dumps every drivers that got manually mapped with kdmapper.☆53Updated 2 years ago
- Handling C++ & __try exceptions without the need of built-in handlers.☆69Updated 3 years ago
- ☆42Updated 2 years ago
- ☆73Updated 11 months ago
- ☆50Updated 4 years ago
- ☆34Updated 2 years ago
- A lightweight BattlEye emulator of the launcher☆60Updated 2 years ago
- A devirtualization engine for Themida.☆97Updated last year
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆57Updated last year
- ☆78Updated 3 years ago
- PE-Dump-Fixer☆105Updated 5 years ago
- A PoC for requesting HWIDs directly from hardware, skipping any potential hooks or OS support.☆79Updated 4 years ago
- ☆74Updated last year
- ☆53Updated 2 years ago
- ☆30Updated 2 years ago
- Simple IDA Pro plugin to download Unity debug symbols from their symbol server☆60Updated 11 months ago
- Virtual and physical memory hacking library using gigabyte vulnerable driver☆71Updated last year
- This tool Decrypt and Extract the files from the EAC☆63Updated last year
- A plugin for x64dbg that can copy RVA from unknown memory pages☆34Updated 2 years ago
- ☆71Updated 2 years ago
- Known ring3 memory protections that can be handled at a simple level.☆64Updated 2 years ago
- Old project (2020) reformed. Modifies gRT->GetVariable sub function from EFI_APPLICATION. Tested on Win10 22H2 (AMD).☆50Updated last year
- ☆66Updated 2 years ago
- A simple ida python script to find .data ptr☆50Updated last year
- just proof of concept. hooking MmCopyMemory PG safe.☆69Updated last year
- ☆42Updated 3 years ago
- mouseclassservicecallback detection via hook☆49Updated 3 years ago
- Kernel Lazy Importer☆109Updated 11 months ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆71Updated last year