首页
社区
课程
招聘
4
Baymax toOls for x64dbg v1.9
发表于: 2023-9-6 09:38 4058

Baymax toOls for x64dbg v1.9

2023-9-6 09:38
4058

BaymaxTools is a feature code extraction and search plug-in for x64dbg debugger. The main functions are:

  1. parsing assembly instructions and extracting corresponding feature codes according to user's settings. 2;
  2. process memory can be quickly searched for feature code entries (6 to 10 times faster than ordinary memory search tools) ;
  3. better parsing of the memory space of the process being debugged (better than x64dbg), including parsing shadowDll, and more convenient memory search by type;
  4. support for searching assembly instructions, and compiled instructions can be converted to feature code for searching;
  5. support for searching for strings (UNICODE\ASCII\UTF-8);
  6. can search for VM-protected instructions;

Update:
Baymax toOls for x64dbg v1.9
2023.08.20

  1. Optimize the search algorithm, faster speed!
  2. Add the module list refresh function in the search window, if there is any change in process memory data or modules, you can refresh it and search again.
  3. The search window supports the search of assembly instructions.
    3.1> Input values will be treated as hexadecimal (without '0x' prefix or 'h' suffix).
    3.2>The first line selected in the assembly window will be used as the starting address for instruction compilation
    3.3>Due to different compilation modes, ModR/M (default engine) can be checked if the result is not as expected.
    3.4>You can search the result of compiling assembly instructions into feature codes in the settings.
  4. the search window supports the search of strings, can be set to not match the case, the default option at the same time to search for strings of UNICODE \ ASCII \ UTF-8 three kinds of encoding.
  5. right-click menu to search for shelled tools (themida, vmprotect, obsidium, enigma ...) VM-protected code can be parsed for cross-section commands.
    5.1>Parsing list of code segments belonging to the original program contains entry addresses of code suspected to be protected by VM.
    Fix some bugs

Download:
https://github.com/sicaril/BaymaxTools
Download: http://pan.baidu.com/s/1pLUuBEj code: 5x8n


[培训]内核驱动高级班,冲击BAT一流互联网大厂工作,每周日13:00-18:00直播授课

最后于 2023-9-12 19:40 被Nisy编辑 ,原因:
上传的附件:
收藏
免费 4
支持
分享
赞赏记录
参与人
雪币
留言
时间
speedboy
为你点赞~
2023-9-7 15:22
tank小王子
为你点赞~
2023-9-6 10:16
小菜鸟一
为你点赞~
2023-9-6 10:10
wusha
为你点赞~
2023-9-6 09:45
最新回复 (10)
雪    币: 1650
活跃值: (4777)
能力值: ( LV5,RANK:69 )
在线值:
发帖
回帖
粉丝
2
666,这是要走国际化路线啊
2023-9-6 10:10
0
雪    币: 38315
活跃值: (7495)
能力值: ( LV3,RANK:20 )
在线值:
发帖
回帖
粉丝
3
2.0才是正式版吧?
2023-9-6 10:33
0
雪    币: 4428
活跃值: (4771)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
4
介绍都用英文了啊,校长的软件要走上国际化了。
2023-9-6 12:51
0
雪    币: 16687
活跃值: (4234)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
5
能否请 Nisy 看一下:
https://github.com/sicaril/BaymaxTools/issues/6
吾爱, 台湾 无法发言,
因为 台湾 手机 无法认证.
2023-9-6 13:15
0
雪    币: 365
活跃值: (2497)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
6
火钳刘明
2023-9-6 15:13
0
雪    币: 6854
活跃值: (7545)
能力值: ( LV3,RANK:30 )
在线值:
发帖
回帖
粉丝
7
感谢校长!Baymax Patch toOls 解决了我多年没搞定的“大项目”
2023-9-7 02:38
0
雪    币: 1673
活跃值: (205)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
8
支持姐姐的大白
2023-9-7 06:39
0
雪    币: 4705
活跃值: (31636)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
9
mark
2023-9-7 09:19
1
雪    币: 2048
活跃值: (5704)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
10
plusv 能否请 Nisy 看一下: https://github.com/sicaril/BaymaxTools/issues/6 吾爱, 台湾 无法发言, 因为 台湾 手机 无法认证.
用英文问看看,中文作者好像不回答的,作者的2款工具看到中文问题都没回答,英文的就有回答
2023-9-7 12:10
0
雪    币: 9600
活跃值: (3784)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
11
校长的粉丝
2023-9-7 15:22
0
游客
登录 | 注册 方可回帖
返回

账号登录
验证码登录

忘记密码?
没有账号?立即免费注册