HACKE-RC / perituxLinks
A PE parser written in C++ which does not uses OOP. Helpful if you want to learn about PE parsing.
☆18Updated 2 years ago
Alternatives and similar repositories for peritux
Users that are interested in peritux are comparing it to the libraries listed below
Sorting:
- ☆24Updated last year
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆36Updated 2 years ago
- Extract data of TTD trace file to a minidump☆31Updated 2 years ago
- Implementation of Advanced Module Stomping and Heap/Stack Encryption☆10Updated 2 years ago
- ☆31Updated 11 months ago
- Neutralize KEPServerEX anti-debugging techniques☆33Updated 2 years ago
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆27Updated 2 years ago
- Process Injection without R/W target memory and without creating a remote thread☆19Updated 3 years ago
- Progress of learning kernel development☆14Updated 3 years ago
- How to set up 2 VirtualBox VM to debug kernel driver using windbg☆57Updated 3 years ago
- ☆72Updated 2 years ago
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated 2 years ago
- Abusing exceptions for code execution.☆113Updated 2 years ago
- An Xdbg Plugin of the ERC Library.☆26Updated last year
- ☆35Updated 2 years ago
- the Open Source and Pure C++ Packer for eXecutables☆21Updated 2 years ago
- ☆29Updated 3 years ago
- call gates as stable comunication channel for NT x86 and Linux x86_64☆32Updated 2 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆73Updated 2 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆27Updated 2 years ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆18Updated 2 years ago
- A post-processing script for TinyTracer☆39Updated 2 years ago
- PEIM (UEFI) bootkit targeting OVMF (EDK2)☆41Updated 2 years ago
- A Python script to download PDB files associated with a Portable Executable (PE)☆127Updated 11 months ago
- NT AUTHORITY\SYSTEM☆43Updated 5 years ago
- Report and exploit of CVE-2023-36427☆90Updated 2 years ago
- .NET deobfuscator and unpacker (with a control flow unflattener for DoubleZero added).☆29Updated 3 years ago
- C# implementation to produce ROR-13 numeric hash for given function API name☆34Updated 6 years ago
- ☆76Updated 2 years ago
- Rule Engine for Dynamic Malware Analysis and Research☆25Updated 9 months ago