Cr4sh / IDA-UbiGraph
IDA Pro plug-in and tools for displaying 3D graphs of procedures using UbiGraph
☆25Updated 11 years ago
Related projects: ⓘ
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆21Updated 7 years ago
- ☆17Updated this week
- ☆10Updated 7 years ago
- reverse win7 32bit hotpatch implement☆9Updated 10 years ago
- ☆24Updated 8 years ago
- CVE-2014-0816☆24Updated 7 years ago
- PIN Tool for monitoring calls and writes from obfuscated code.☆26Updated 5 years ago
- A couple of little tools I've made for working with Windows Drivers☆15Updated 8 years ago
- reversed emet tool☆24Updated 11 years ago
- Kernel-mode file scanner☆17Updated 6 years ago
- just an lite AntiRootkit for interesting☆23Updated 8 years ago
- ☆13Updated 7 years ago
- ☆28Updated 7 years ago
- Import debugging traces from WinDBG into IDA. Color the graph, fill in the value of all the operands, etc.☆25Updated 11 years ago
- Helper utility for debugging windows PE/PE+ loader.☆49Updated 9 years ago
- Logs instruction hits to a file which can be fed into IDA Pro to highlight which instructions were called.☆41Updated 11 years ago
- 파일시스템 미니필터 드라이버 (교육용 코드)☆6Updated 5 years ago
- The project is a demo solution for one of the anti-rootkit techniques aimed on overcoming splicers☆34Updated 7 years ago
- 微软7月布丁增加内存延迟释放机制☆11Updated 10 years ago
- Reverse engineered vmware workstation code to aid in kernel debugging.☆14Updated 8 years ago
- User-mode process cross-checking utility intended to detect naive malware hiding itself by hooking IAT/EAT.☆18Updated 8 years ago
- ☆14Updated 7 years ago
- ☆11Updated this week
- Kernel Shellcode to add all privileges in token☆13Updated 7 years ago
- Short for Good Ware; it assists Reverse Engineers in the analysis of Windows Malware.☆24Updated 12 years ago
- A sample project for using Capstone from a driver in Visual Studio 2015☆34Updated 8 years ago
- Windows build files for the VMHunt Intel PIN Trace tool☆19Updated 5 years ago
- Exploiting HEVD's WriteWhatWhereIoctlDispatch for LPE on Windows 10 TH2 through RS3 using GDI objects.☆24Updated 6 years ago
- A toolset to assess the behavioral capabilities of AV/HIPS software☆8Updated 10 years ago