Bareflank / extended_apis_example_hook
deprecated
☆26Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for extended_apis_example_hook
- Intermediate x86 instruction representation for use in obfuscation/deobfuscation.☆52Updated 7 years ago
- A sample project for using Capstone from a driver in Visual Studio 2015☆33Updated 8 years ago
- Static analysis tools for x86 assembly☆13Updated 7 years ago
- Import debugging traces from WinDBG into IDA. Color the graph, fill in the value of all the operands, etc.☆25Updated 12 years ago
- Helper utility for debugging windows PE/PE+ loader.☆50Updated 9 years ago
- Windows build files for the VMHunt Intel PIN Trace tool☆19Updated 5 years ago
- Decrement Windows Kernel for fun and profit☆39Updated 6 years ago
- Windows 10 kernel and ntdll internal types, directly compatible with ida.☆50Updated 6 years ago
- just an lite AntiRootkit for interesting☆23Updated 8 years ago
- Plugins for IDA Pro and Hex-Rays☆40Updated 6 years ago
- OpenSrc projects; common multiprojects headers store to ./Common/*category*/☆48Updated 10 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆21Updated 7 years ago
- ☆24Updated 8 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆33Updated 4 months ago
- Maltrace is a simple syscall tracer for Windows implemented through the use of PIN.☆23Updated 11 years ago
- IDAPython script in order to auto-rename subs☆20Updated 7 years ago
- Allows IDA PRO to disassemble x86-64 code (WOW64) in 32-bit database☆25Updated 2 years ago
- IDA plugin to explore and browse tags☆52Updated 5 years ago
- A couple of little tools I've made for working with Windows Drivers☆15Updated 8 years ago
- Windows 10 UAC bypass PoC using LaunchInfSection☆34Updated 6 years ago
- AllMemPro☆43Updated 6 years ago
- PIN Tool for monitoring calls and writes from obfuscated code.☆26Updated 5 years ago
- API logger plugin for Intel Pintool☆14Updated 7 years ago
- [ARCHIVED] mov rax, ${Thalium/IceBox}; jmp rax;☆71Updated 5 years ago
- Analyze PatchGuard☆53Updated 6 years ago
- A hypervisor or virtual machine monitor (VMM) fuzzer☆28Updated 4 years ago