XShar / Win_API_ObfuscationLinks
Скрытие Win API
☆27Updated 6 years ago
Alternatives and similar repositories for Win_API_Obfuscation
Users that are interested in Win_API_Obfuscation are comparing it to the libraries listed below
Sorting:
- Скрытие строки от отладчиков и декомпиляторов☆51Updated 5 years ago
- Simple PE Packer Which Encrypts .text Section☆50Updated 8 years ago
- Мутация PE x86☆16Updated 6 years ago
- Криптор с антиэмуляцией и полиморфизмом для x64☆17Updated 6 years ago
- LSASS INJECTOR☆35Updated 6 years ago
- Allows you to find the use of ScyllaHide, if your program will debug and restore hooking functions bytes.☆26Updated 6 years ago
- Obfuscate calls to imports by patching in stubs☆72Updated 4 years ago
- x64 syscall caller in C++.☆91Updated 7 years ago
- Stealthy Injector that leverages a vulnerable driver and other exploits to remain undetected☆36Updated 6 years ago
- ☆69Updated 4 years ago
- MazzCrypt - You won't ever get caught. A [was-private] polymorphic source code parser to randomize executables. Inspired by PolyLoader by…☆13Updated 9 years ago
- An automatic tool for fixing dumped PE files☆41Updated 5 years ago
- An implementation of the Process Hollowing technique.☆16Updated 4 years ago
- PAGE_GUARD based hooking library☆48Updated 3 years ago
- A packed & protected Module Loader and more, for 64-bit Windows☆30Updated 4 years ago
- ☆59Updated 3 years ago
- With this RunPE you can easily inject your payload in any x86 or x64 program.☆15Updated 6 years ago
- A library with four different methods to execute shellcode in a process☆26Updated 5 years ago
- A poc that abuses Enclave☆39Updated 3 years ago
- using gpuz to load driver☆35Updated 6 years ago
- A reflexive driver loader to bypass Windows DSE (featuring a custom PE loader)☆43Updated 7 years ago
- Manual PE image mapper☆65Updated 12 years ago
- A multi-staged malware that contains a kernel mode rootkit and a remote system shell.☆73Updated 4 years ago
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆47Updated 2 years ago
- A quick-and-dirty anti-hook library proof of concept.☆105Updated 7 years ago
- Dump mapped PE files from memory to the disk☆20Updated 6 years ago
- Polymorphic Stub Creator☆34Updated 8 years ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆24Updated 3 years ago
- Bypasses for Windows kernel callbacks PatchGuard protection☆43Updated 4 years ago
- Hooking Shadow and normal SSDT with Kaspersky Hypervisor and abusing alignment☆25Updated 4 years ago