AimiP02 / BronyaObfusLinks
整合Pluto-Obfuscator和goron部分混淆,移植到LLVM-16.0.x,使用NewPassManager
☆133Updated 2 years ago
Alternatives and similar repositories for BronyaObfus
Users that are interested in BronyaObfus are comparing it to the libraries listed below
Sorting:
- 非编译时代码混淆,包括代码块拆分、代码乱序、常量加密、代码变异、抹除jcc、局部混淆等,主要提供框架以及思路☆33Updated 2 years ago
- Process Injection via Component Object Model (COM) IRundown::DoCallback().☆64Updated 3 years ago
- Another LLVM-obfuscator based on LLVM-17. A fork of Arkari☆110Updated last year
- Heaven's Gate implementation in C for constructing x64 Win32 API call in x86 WoW64 processes.☆80Updated 4 years ago
- about how to make a anti-virus engine☆104Updated 8 months ago
- out-of-tree llvm obfuscation pass plugin (dynamically loadable by rustc). || rust toolchain with obfuscation llvm pass.☆177Updated last year
- merge rust-lang's llvm and KomiMoe's Arkari (llvm) to produce obfuscated llvm for rustc☆37Updated last month
- 大数字驱动逆向代码☆78Updated 2 years ago
- shellcode生成框架☆89Updated last year
- 使用 Intel 虚拟化特性实现应用层HOOK☆65Updated 4 months ago
- Windows 常用版本内核文件收集☆13Updated 2 years ago
- 利用物理内存映射,实现虚拟内存的伪隐藏☆86Updated 3 years ago
- Windows API Call Obfuscation☆112Updated 3 years ago
- IDA Python script for generating Windows x86 shellcode with one click☆40Updated 2 years ago
- ☆21Updated 3 years ago
- Ida pro plugin. The antiVM aims to quickly identify anti-virtual machine and anti-sandbox behavior. This can speed up malware analysis.☆45Updated 3 years ago
- An implementation of an indirect system call☆132Updated 2 years ago
- 32 bit process inject shellcode to 32 bit process and 64 bit process☆35Updated 2 years ago
- x86-x64 Packer with Portable Executable compatibility.☆98Updated last month
- IAT-Obfuscation to make static analysis of executable harder.☆44Updated 4 years ago
- sc4cpp is a shellcode framework based on C++☆95Updated 4 years ago
- An Obfuscator-LLVM based mingw-w64 toolchain.☆46Updated 4 years ago
- ☆143Updated 2 years ago
- ☆34Updated 2 years ago
- Stack integrity verification to Detect SleepMask or CallStack Spoofer☆52Updated 6 months ago
- 一个仅使用2字节修改实现内核任意函数hook的方法。☆57Updated 8 months ago
- Detect BypassUAC using AMSI☆29Updated 11 months ago
- 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》☆161Updated last year
- 针对windows rootkit的一些检测,分别从进程、端口、文件这三个方面进行检测。☆21Updated last year
- shellcode-loaders and beacon-loaders☆72Updated 2 years ago