AimiP02 / BronyaObfus
整合Pluto-Obfuscator和goron部分混淆,移植到LLVM-16.0.x,使用NewPassManager
☆113Updated last year
Related projects ⓘ
Alternatives and complementary repositories for BronyaObfus
- 非编译时代码混淆,包括代码块拆分、代码乱序、常量加密、代码变异、抹除jcc、局部混淆等,主要提供框架以及思路☆29Updated last year
- IDA Python script for generating Windows x86 shellcode with one click☆35Updated last year
- 利用物理内存映射,实现虚拟内存的伪隐藏☆73Updated 2 years ago
- Process Injection via Component Object Model (COM) IRundown::DoCallback().☆54Updated last year
- 大数字驱动逆向代码☆65Updated last year
- Heaven's Gate implementation in C for constructing x64 Win32 API call in x86 WoW64 processes.☆67Updated 3 years ago
- Obfuscator-LLVM for LLVM 16.x branch☆187Updated last year
- Ida pro plugin. The antiVM aims to quickly identify anti-virtual machine and anti-sandbox behavior. This can speed up malware analysis.☆37Updated 2 years ago
- out-of-tree llvm obfuscation pass plugin (dynamically loadable by rustc). || rust toolchain with obfuscation llvm pass.☆81Updated 4 months ago
- Another LLVM-obfuscator based on LLVM-17. A fork of Arkari☆64Updated 9 months ago
- ☆118Updated last year
- An implementation of an indirect system call☆116Updated last year
- 一个用来做windows内核hook的框架☆81Updated 7 months ago
- Forked LLVM focused on MSVC Compatibility. This version is designed for windows users☆75Updated last month
- sc4cpp is a shellcode framework based on C++☆87Updated 3 years ago
- 使用 Intel 虚拟化特性实现应用层HOOK☆31Updated last week
- Hook NtDeviceIoControlFile with PatchGuard☆101Updated 2 years ago
- 跨平台模拟执行unicorn框架基于Qemu的TCG模式(Tiny Code Generator),以无硬件虚拟化支持方式实现全系统的虚拟化,支持跨平台和架构的CPU指令模拟,本文讨论是一款笔者的实验性项目采用Windows Hypervisor Platform虚拟机模式…☆64Updated 11 months ago
- ☆100Updated 10 months ago
- InfinityHook 支持Win7 到 Win11 最新版本,虚拟机环境及物理机环境☆34Updated last month
- Obfuscation LLVM 16☆63Updated last year
- 研究和移除各种内核回调,在anti anti cheat的路上越走越远☆167Updated 2 years ago
- Walks the CFG bitmap to find previously executable but currently hidden shellcode regions☆100Updated last year
- ☆26Updated 11 months ago
- 简单安排一下 autochk.sys 这个rootkit☆67Updated last year
- Enum and Remove Hook in Windows☆33Updated last month
- Example of reading process memory through kernel special APC☆98Updated last year
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆91Updated last year
- A POC to detect the exist of VMProtect 3 protection by search feature watermark.☆76Updated 11 months ago
- PoC Anti-Rootkit/Anti-Cheat Driver.☆162Updated 2 months ago