Ricardonacif / gh-anti-debugging-bypassLinks
A simple DLL to bypass the anti debugging methods from GH Anti Debugging with explanation
☆59Updated 5 years ago
Alternatives and similar repositories for gh-anti-debugging-bypass
Users that are interested in gh-anti-debugging-bypass are comparing it to the libraries listed below
Sorting:
- PE-Dump-Fixer☆111Updated 5 years ago
- A customizable process dumper.☆144Updated 6 years ago
- x64dbg plugin for simple spoofing of CPUID instruction behavior☆100Updated 2 years ago
- Ghetto user mode emulation of Windows kernel drivers.☆158Updated last year
- VMProtect, VMP, Devirter, 3,5☆112Updated 2 years ago
- A devirtualization engine for Themida.☆105Updated last year
- A mini anti-anti debug hooking library for Windows.☆106Updated 5 years ago
- Hygieia, a vulnerable driver traces scanner written in C++ as an x64 Windows kernel driver.☆150Updated 3 years ago
- Some usefull info when reverse engineering Kernel Mode Anti-Cheat☆78Updated 2 years ago
- Attempts to decrypt JM Xorstr in some x64 binaries☆59Updated 2 years ago
- Library containing Anti-RE and Anti-Debug methods.☆117Updated 8 months ago
- Various IDA scripts I've created for Reverse engineering.☆95Updated last year
- Obfuscate calls to imports by patching in stubs☆72Updated 4 years ago
- reverse engineering of bedaisy.sys (battleyes kernel driver) - Aki2k/BEDaisy☆111Updated 5 years ago
- ☆53Updated 4 years ago
- DLL Injector using manual map, written in C++☆45Updated 5 years ago
- x64 Windows kernel driver mapper, inject unsigned driver using anycall☆191Updated last year
- A Dynamic Study Vmprotect 1.x-1.9X Unpacking Toolkit, Recovery OEP, FIX PE, IAT and bypass protection with custom Loader and interceptor …☆36Updated 2 years ago
- C/C++ antidebugging library for Windows☆49Updated 2 months ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆89Updated 2 years ago
- A proof of concept demonstrating instrumentation callbacks on Windows 10 21h1 with a TLS variable to ensure all syscalls are caught.☆152Updated 4 years ago
- Plugin for ReClass.Net (using vulnerable driver to read process memory)☆94Updated 6 years ago
- x64 syscall caller in C++.☆93Updated 7 years ago
- Vectored Exception Handling Hooking Class☆167Updated 7 years ago
- ☆155Updated 6 years ago
- Analyze patches in a process☆258Updated 4 years ago
- Known ring3 memory protections that can be handled at a simple level.☆67Updated 2 years ago
- TS-Changer - Forces the machine in/out of TestSigning Mode at runtime.☆66Updated 2 years ago
- A simple tool to assemble shellcode ready to be copy-pasted into code☆71Updated 3 years ago
- A PoC for requesting HWIDs directly from hardware, skipping any potential hooks or OS support.☆88Updated 4 years ago