BlackLuny / WinIPTCollector
Intel Processor Trace package collector for Windows
☆17Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for WinIPTCollector
- Analyze PatchGuard☆53Updated 6 years ago
- a simple intel vt code both support x86 & x64. PatchGuard monitor.☆75Updated 3 years ago
- Code-Reuse Exploits detection using Intel Processor Trace☆27Updated 6 years ago
- createfile☆48Updated 9 years ago
- IA32-doc is a project which aims to put as many definitions from the Intel Manual into machine-processable format as possible☆16Updated 2 years ago
- ☆27Updated 5 years ago
- 大表哥的Syscall-Monitor☆34Updated 5 years ago
- VMProtect analysis script☆55Updated 4 years ago
- ntos shit☆21Updated 9 months ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆24Updated 10 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆33Updated 4 months ago
- enable libemu run pe file and add some good modify☆14Updated 5 years ago
- ☆33Updated 4 years ago
- Plain project for usege with github/zer0mem/common.git☆48Updated 10 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Updated 4 years ago
- POC of sysenter x64 LSTAR MSR hook☆38Updated 10 years ago
- Collection of resources about Virtualization☆10Updated 5 years ago
- Shareds for kernel developement☆27Updated 10 years ago
- kernel-mode TDI client which can send and receive HTTP requests☆55Updated 6 years ago
- TLB Splitting with intel vt-d and KVM☆21Updated 7 years ago
- For Example. See Miro's Blog☆29Updated last year
- WinDbg-Samples ExdiGdbSrv fork 修复了一部分Vmware调试的问题☆24Updated last year
- ☆27Updated 6 years ago
- A simple x86 (32 bit) disassembler☆7Updated 5 years ago
- A poc of embedding x64 code into x86 PE file☆15Updated 5 years ago
- An ark tool's driver☆39Updated 7 years ago
- A simple and heavily documented series of test hypervisors built for 64-bit Windows 10 systems running under Intel's VT-x☆29Updated 3 years ago
- UNIPE - A small framwork to execute PE files with UniCorn☆45Updated 6 years ago
- A simple pluggable tool to convert an unrolled TritonAST to LLVM-IR, optimize it and get back to TritonAST.☆34Updated 4 years ago
- ☆93Updated 7 years ago