themida-dumper

(★ 21)

Generic Themida/WinLicense payload extractor. Launches protected PE as suspended process, detects section decryption, dumps unpacked binary with fixed headers, and scans process memory for IOCs. Supports EXE and DLL targets (x86/x64).

themida-dumper Latest Version Download

Download Latest Version (.zip)
// repository documentation