AimiP02 / BronyaObfus
整合Pluto-Obfuscator和goron部分混淆,移植到LLVM-16.0.x,使用NewPassManager
☆112Updated last year
Related projects ⓘ
Alternatives and complementary repositories for BronyaObfus
- 非编译时代码混淆,包括代码块拆分、代码乱序、常量加密、代码变异、抹除jcc、局部混淆等,主要提供框架以及思路☆29Updated last year
- IDA Python script for generating Windows x86 shellcode with one click☆34Updated last year
- Heaven's Gate implementation in C for constructing x64 Win32 API call in x86 WoW64 processes.☆67Updated 3 years ago
- Ida pro plugin. The antiVM aims to quickly identify anti-virtual machine and anti-sandbox behavior. This can speed up malware analysis.☆37Updated 2 years ago
- 大数字驱动逆向代码☆65Updated last year
- 利用物理内存映 射,实现虚拟内存的伪隐藏☆72Updated 2 years ago
- An implementation of an indirect system call☆116Updated last year
- out-of-tree llvm obfuscation pass plugin (dynamically loadable by rustc). || rust toolchain with obfuscation llvm pass.☆69Updated 4 months ago
- Process Injection via Component Object Model (COM) IRundown::DoCallback().☆53Updated last year
- Obfuscator-LLVM for LLVM 16.x branch☆185Updated last year
- Obfuscation LLVM 16☆62Updated last year
- Forked LLVM focused on MSVC Compatibility. This version is designed for windows users☆75Updated 3 weeks ago
- ☆117Updated last year
- Another LLVM-obfuscator based on LLVM-17. A fork of Arkari☆63Updated 8 months ago
- Hook NtDeviceIoControlFile with PatchGuard☆101Updated 2 years ago
- ☆98Updated 10 months ago
- shellcode生成框架☆78Updated 3 months ago
- 简单安排一下 autochk.sys 这个rootkit☆67Updated last year
- 一个用来做windows内核hook的框架☆81Updated 6 months ago
- ☆26Updated 10 months ago
- Enum and Remove Hook in Windows☆32Updated last month
- sc4cpp is a shellcode framework based on C++☆87Updated 3 years ago
- Uses Threat-Intelligence ETW events to identify shellcode regions being hidden by fluctuating memory protections☆95Updated last year
- https://key08.com/index.php/2021/10/19/1375.html☆62Updated 2 years ago
- 跨平台模拟执行unicorn框架基于Qemu的TCG模式(Tiny Code Generator),以无硬件虚拟化支持方式实现全系统的虚拟化,支持跨平台和架构的CPU指令模拟,本文讨论是一款笔者的实验性项目采用Windows Hypervisor Platform虚拟机模式…☆62Updated 10 months ago
- InfinityHook 支持Win7 到 Win11 最新版本,虚拟机环境及物理机环境☆33Updated last month
- IAT-Obfuscation to make static analysis of executable harder.☆41Updated 3 years ago
- Walks the CFG bitmap to find previously executable but currently hidden shellcode regions☆100Updated last year
- windwos内核研究与驱动Code☆60Updated 2 years ago
- Kill Protected Process Light Process (include av)☆54Updated last year