zhkl0228 / d810
D-810 is an IDA Pro plugin which can be used to deobfuscate code at decompilation time by modifying IDA Pro microcode.
☆51Updated 3 years ago
Alternatives and similar repositories for d810:
Users that are interested in d810 are comparing it to the libraries listed below
- ollvm de-obfuscator☆59Updated 3 years ago
- Deobfuscate OLLVM Bogus Control Flow via angr☆63Updated 3 years ago
- a deflat script using unicorn engine☆42Updated 2 years ago
- break ollvm.☆99Updated this week
- Find crypto constants IDA 7.x plugin☆116Updated 2 years ago
- A port of Rolf Rolles' https://github.com/RolfRolles/HexRaysDeob to Python☆167Updated 3 years ago
- ☆29Updated last year
- deflat plugins for ida pro☆37Updated last year
- Use binaryninja workflow to deflat ollvm cff☆18Updated 2 weeks ago
- An IDA pro plugin to display user-added comments in disassembly and pseudocode views.☆83Updated last year
- deobfuscation BR☆46Updated last year
- IDA Python Script for anti ollvm☆103Updated 3 years ago
- Hex-Rays OLLVM Deobfuscator and MicroCode Explorer☆140Updated 4 years ago
- My toy llvm pass☆136Updated 3 years ago
- tprt ollvm 反混淆 修改 binja il☆40Updated 8 months ago
- A static devirtualizer for VMProtect x64 3.x. powered by VTIL.☆22Updated 2 years ago
- IDA Python Script for anti ollvm-arm☆27Updated 3 years ago
- IDA_Signsrch in Python☆102Updated 5 years ago
- Ghidra/IDA Pro plugins to load similarity result from binaryai.net☆87Updated 2 years ago
- Toy LLVM obfuscator pass☆72Updated 3 years ago
- 一个将 vmnote 指令集重编译成 x64 指令集的脚本,并且可以用 IDA 进行分析。☆14Updated 3 years ago
- ☆31Updated 4 years ago
- 跨平台模拟执行unicorn框架基于Qemu的TCG模式(Tiny Code Generator),以无硬件虚拟化支持方式实现全系统的虚拟化,支持跨平台和架构的CPU指令模拟,本文讨论是一款笔者的实验性项目采用Windows Hypervisor Platform虚拟机模式…☆66Updated last year
- AntiOllvm Fla with Fake Runtime☆155Updated 3 months ago
- 帮助逆向者使用ida便利地调试apk so文件,抛开调试前的那些麻烦步骤☆44Updated 3 years ago
- This is a IDA plugin that integrates several modules of miasm☆20Updated 4 years ago
- Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA☆126Updated last year
- Taint Analysis Engine and Trace Exploration : Overcome Obfuscation☆38Updated last month
- A program to read and modify the memory of other processes.☆17Updated last year
- fork 自 https://gitlab.com/eshard/d810 添加了参考文章、测试样本,作为备份。☆12Updated 3 years ago