首页
社区
课程
招聘
Baymax toOls for x64dbg v1.9
发表于: 2023-9-6 09:38 3689

Baymax toOls for x64dbg v1.9

2023-9-6 09:38
3689

BaymaxTools is a feature code extraction and search plug-in for x64dbg debugger. The main functions are:

  1. parsing assembly instructions and extracting corresponding feature codes according to user's settings. 2;
  2. process memory can be quickly searched for feature code entries (6 to 10 times faster than ordinary memory search tools) ;
  3. better parsing of the memory space of the process being debugged (better than x64dbg), including parsing shadowDll, and more convenient memory search by type;
  4. support for searching assembly instructions, and compiled instructions can be converted to feature code for searching;
  5. support for searching for strings (UNICODE\ASCII\UTF-8);
  6. can search for VM-protected instructions;

Update:
Baymax toOls for x64dbg v1.9
2023.08.20

  1. Optimize the search algorithm, faster speed!
  2. Add the module list refresh function in the search window, if there is any change in process memory data or modules, you can refresh it and search again.
  3. The search window supports the search of assembly instructions.
    3.1> Input values will be treated as hexadecimal (without '0x' prefix or 'h' suffix).
    3.2>The first line selected in the assembly window will be used as the starting address for instruction compilation
    3.3>Due to different compilation modes, ModR/M (default engine) can be checked if the result is not as expected.
    3.4>You can search the result of compiling assembly instructions into feature codes in the settings.
  4. the search window supports the search of strings, can be set to not match the case, the default option at the same time to search for strings of UNICODE \ ASCII \ UTF-8 three kinds of encoding.
  5. right-click menu to search for shelled tools (themida, vmprotect, obsidium, enigma ...) VM-protected code can be parsed for cross-section commands.
    5.1>Parsing list of code segments belonging to the original program contains entry addresses of code suspected to be protected by VM.
    Fix some bugs

Download:
https://github.com/sicaril/BaymaxTools
Download: http://pan.baidu.com/s/1pLUuBEj code: 5x8n


[招生]科锐逆向工程师培训(2024年11月15日实地,远程教学同时开班, 第51期)

最后于 2023-9-12 19:40 被Nisy编辑 ,原因:
上传的附件:
收藏
免费 4
支持
分享
最新回复 (10)
雪    币: 1079
活跃值: (4167)
能力值: ( LV5,RANK:69 )
在线值:
发帖
回帖
粉丝
2
666,这是要走国际化路线啊
2023-9-6 10:10
0
雪    币: 35485
活跃值: (7155)
能力值: ( LV3,RANK:20 )
在线值:
发帖
回帖
粉丝
3
2.0才是正式版吧?
2023-9-6 10:33
0
雪    币: 3488
活跃值: (3878)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
4
介绍都用英文了啊,校长的软件要走上国际化了。
2023-9-6 12:51
0
雪    币: 15928
活跃值: (3330)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
5
能否请 Nisy 看一下:
https://github.com/sicaril/BaymaxTools/issues/6
吾爱, 台湾 无法发言,
因为 台湾 手机 无法认证.
2023-9-6 13:15
0
雪    币: 203
活跃值: (2237)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
6
火钳刘明
2023-9-6 15:13
0
雪    币: 6032
活跃值: (6666)
能力值: ( LV3,RANK:30 )
在线值:
发帖
回帖
粉丝
7
感谢校长!Baymax Patch toOls 解决了我多年没搞定的“大项目”
2023-9-7 02:38
0
雪    币: 1847
活跃值: (150)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
8
支持姐姐的大白
2023-9-7 06:39
0
雪    币: 2852
活跃值: (30816)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
9
mark
2023-9-7 09:19
1
雪    币: 2325
活跃值: (4822)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
10
plusv 能否请 Nisy 看一下: https://github.com/sicaril/BaymaxTools/issues/6 吾爱, 台湾 无法发言, 因为 台湾 手机 无法认证.
用英文问看看,中文作者好像不回答的,作者的2款工具看到中文问题都没回答,英文的就有回答
2023-9-7 12:10
0
雪    币: 8790
活跃值: (3028)
能力值: ( LV2,RANK:10 )
在线值:
发帖
回帖
粉丝
11
校长的粉丝
2023-9-7 15:22
0
游客
登录 | 注册 方可回帖
返回
//