NtQuery / ScyllaPluginsLinks
Plugins for Scylla
☆19Updated 13 years ago
Alternatives and similar repositories for ScyllaPlugins
Users that are interested in ScyllaPlugins are comparing it to the libraries listed below
Sorting:
- Hooking functions with structured and vectored exception handling☆8Updated 2 years ago
- An idea in hooking APIs by replacing calls that lead to them☆1Updated 2 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆23Updated 8 years ago
- Hook APIs and send data back to another process with Google Protobufs☆2Updated 2 years ago
- windows kernel File redirection☆20Updated 10 years ago
- easy detour-, vftable-, iat- and eathooking☆12Updated 9 years ago
- UI application that can compare PE images in memory or in raw PE file☆18Updated 11 years ago
- WoW64 -> x64☆19Updated 8 years ago
- Given a global name in IDA Pro, find all xrefs which are contained in an exported function.☆11Updated 8 years ago
- ☆28Updated 4 years ago
- Notes my learning steps about Windows-NT☆23Updated 8 years ago
- Hooking functions with guard pages☆9Updated 2 years ago
- PE rebuilder, based on yoda's realigndll☆12Updated 13 years ago
- Wow64 syscall hook☆40Updated 8 years ago
- Formely KMon, a Windows Kernel Driver designed to prevent malware attacks by monitoring the creation of registry keys in common autorun l…☆21Updated 11 years ago
- just an lite AntiRootkit for interesting☆23Updated 9 years ago
- Today Plugin (x64) - A Plugin For x64dbg☆13Updated 7 years ago
- ☆13Updated 9 years ago
- ☆13Updated 6 years ago
- use crystalCPUID to identify vt-x & amd-v☆17Updated 10 years ago
- An aggregate of tools used in the core of vmp_dbg plus other parsing utils to parse vmp bc.☆15Updated 8 years ago
- A WDM Windows driver to issue IO to storage devices with asynchronous multithreaded processing☆21Updated 8 years ago
- simple plugin for lastest olly versions to display the callstack☆16Updated 12 years ago
- Sample debugger for x86 and x64☆4Updated 2 years ago
- ☆33Updated 4 years ago
- A simple native code virtualizer for 32-bit Windows PE☆15Updated 9 years ago
- User-mode process cross-checking utility intended to detect naive malware hiding itself by hooking IAT/EAT.☆19Updated 9 years ago
- Hidden module/dll detector for windows apps☆15Updated 8 years ago
- A driverless driver that is supposed to be manually mapped, usually by using TDL exploit. The driver shows how to read/write to any proce…☆21Updated 7 years ago
- WhoCalls can query a directory of files, find the binaries, and search for a user specified Win API import. It and works with both 32-bit…☆17Updated 3 years ago