mrexodia/dumpulator
An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in general (sandboxing).
CBSL-1.0
Issues
- 0
Better error when information is missing
#81 opened by mrexodia - 0
Support fixed-size arrays in `Struct`
#70 opened by mrexodia - 0
Update @syscall example with the right imports
#40 opened by mrexodia - 0
Add an example of `dumpulator.Struct`
#62 opened by mrexodia - 1
Add support for exception hooks
#41 opened by mrexodia - 1
Hide the unicorn part from the stack trace
#46 opened by mrexodia - 1
Rename `quiet` to `log_level`
#45 opened by mrexodia - 0
Reading beyond the size causes assertion failure
#42 opened by mrexodia - 1
- 0
Proper (extensible) testing
#28 opened by mrexodia - 0
Add an API for printing address information
#43 opened by mrexodia - 1
Add heap information to the memory map
#44 opened by mrexodia - 0
Improve performance of the `LazyPageManager`
#39 opened by mrexodia - 0
allocate throwing error
#37 opened by herrcore - 4
- 1
Incorrect width for Enums in 64bit
#30 opened by oopsmishap - 0
Document the handle/memory/module manager
#29 opened by mrexodia - 0
Trace points
#27 opened by mrexodia - 1
Saving/restoring state
#13 opened by mrexodia - 1
Implement a module manager
#17 opened by mrexodia - 4
x64 dump of x86 process fail to emulate
#10 opened by thewhitegoatcb - 1
Fix loading of kernel32 on modern systems
#3 opened by mrexodia - 3
Implement exception handling
#1 opened by mrexodia - 0
Implement a memory manager
#15 opened by mrexodia - 1
Upgrade to unicorn2
#6 opened by mrexodia - 0
- 5
Implement a handle manager
#16 opened by mrexodia - 0
Implement write_byte write_word etc
#8 opened by mrexodia - 0
Add an example with `quiet=True`
#14 opened by mrexodia - 0
Implement quiet mode for scripting
#9 opened by mrexodia - 0
Implement custom calling conventions
#4 opened by mrexodia