KasperskyLab / ArticlesLinks
☆17Updated 8 years ago
Alternatives and similar repositories for Articles
Users that are interested in Articles are comparing it to the libraries listed below
Sorting:
- anti-virtualmachine with C!☆23Updated 9 years ago
- Analyze and attack windows applications using dll hijacking vulnerabilities☆59Updated 6 years ago
- Collection Of Anti-Debugging Tricks☆100Updated 10 years ago
- ☆29Updated 10 years ago
- PoC for detecting and dumping code injection (built and extended on UnRunPE)☆58Updated 7 years ago
- PE file manipulation library.☆63Updated 6 years ago
- Hidden kernel mode code execution for bypassing modern anti-rootkits.☆84Updated 15 years ago
- Debugger extension for the Debugging Tools for Windows (WinDbg, KD, CDB, NTSD).☆69Updated 9 years ago
- Process Hollowing techniques as used in many file Crypters (C/C++)☆85Updated 5 years ago
- Open and generic Anti-Anti Reversing Framework. Works in 32 and 64 bits.☆65Updated 13 years ago
- Anti-Anti-VM solution via Windows Driver☆62Updated 7 years ago
- PE Infector/Cryptor source code☆20Updated 3 years ago
- C++ wrapper for YARA.☆45Updated 6 years ago
- Standalone tool to explore the security model of Windows and its NT kernel. Use it to introspect privilege assignments and access right a…☆33Updated 6 years ago
- A session-0 capable dll injection utility☆76Updated 7 years ago
- ☆82Updated 8 years ago
- ☆34Updated 7 years ago
- A software driver that lets you log kernel-mode debug output into a file on Windows.☆108Updated 7 years ago
- Zerokit/GAPZ rootkit (non buildable and only for researching)☆185Updated 6 years ago
- My repository to upload drivers from different books and all the information related to windows internals.☆163Updated 6 years ago
- Simple tool for unpacking packed/protected malware executables.☆32Updated 14 years ago
- An alternative tool to Sysinternals WinObj tool (nicer icons!)☆35Updated 7 years ago
- Proof of concept implementation of in-memory PE Loader based on ReflectiveDLLInjection Technique☆159Updated 7 years ago
- Library for kernel and user mode splicing for Windows (x86 and x64).☆64Updated 13 years ago
- Protects deletion of files with a specified extension using a kernel-mode driver.☆76Updated 7 years ago
- GetHooks is a program designed for the passive detection and monitoring of hooks from a limited user account.☆61Updated 4 years ago
- library, which help to describe or load and execute PE files.☆55Updated 12 years ago
- Tutorial for writing x86 / x64 assembly code in Visual Studio☆38Updated last month
- A command tree based on commands and extensions for Windows Kernel Debugging.☆111Updated 5 years ago
- CAPE monitor DLLs☆41Updated 6 years ago