# balbuzard > Extract and deobfuscate patterns from suspicious files. **Category:** [[categories/examine-static-properties-deobfuscation|Examine Static Properties > Deobfuscation]] | **Tier:** Standard (docs) **Docs:** [https://docs.remnux.org/discover-the-tools/examine+static+properties/deobfuscation](https://docs.remnux.org/discover-the-tools/examine+static+properties/deobfuscation) ## Related Tools - [[tools/1768|1768.py]] — Parse Cobalt Strike beacon configuration from shellcode or m - [[tools/base64dump|base64dump.py]] — Extract and decode Base64-encoded strings from files - [[tools/brxor|brxor.py]] — Brute-force XOR key detection for single-byte XOR-encoded st - [[tools/chepy|chepy]] — Decode and otherwise analyze data using this command-line to - [[tools/cobalt-strike-configuration-extractor-csce-and-parser|Cobalt Strike Configuration Extractor (CSCE) and Parser]] — Analyze Cobalt Strike beacons. #examine-static-properties-deobfuscation