archercreat / api-tracerLinks
api-tracer is a tiny (useless) tracer
☆15Updated 2 years ago
Alternatives and similar repositories for api-tracer
Users that are interested in api-tracer are comparing it to the libraries listed below
Sorting:
- vdk is a set of utilities used to help with exploitation of a vulnerable driver.☆40Updated 3 years ago
- LLVM obfuscation pass, flattening at the basic block's level and turning each basic block into a dispacher and each instruction into a ne…☆47Updated 3 years ago
- Windows kernel driver template for cmkr and llvm-msvc.☆35Updated last year
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆67Updated last year
- Generate a PDB file given the old PDB file and an address mapping☆49Updated this week
- A driver to implement IOCTL hooking☆24Updated 3 years ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago
- ☆22Updated 5 months ago
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated 2 years ago
- This is the PoC of a dynamic lifter and deobfuscator with collecting trace.☆35Updated last year
- Simple x64dbg plugin to save a full memory dump☆50Updated 2 years ago
- devirtualization vmprotect☆62Updated 2 years ago
- ☆32Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- dynamic binary instrumentation, analysis, and patching framework☆73Updated 2 weeks ago
- Windows Minidump loader for Ghidra☆29Updated 2 years ago
- Collaboration platform for reverse engineering tools.☆41Updated 7 months ago
- genpatch is IDA plugin that generates a python script for patching binary☆36Updated last year
- Playing with LLVM passes☆36Updated last year
- A Binary Ninja plugin to detect Themida, WinLicense and Code Virtualizer's obfuscated code locations.☆82Updated last year
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆60Updated 11 months ago
- Taking advantage of CRT initialization, to get away with hooking protected applications☆47Updated 2 years ago
- llvm powered deobfuscation of a vm-based protection☆39Updated 3 months ago
- ☆25Updated 2 months ago
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆84Updated 4 years ago
- Reverse engineered API for Microsoft's Time Travel Debugger☆35Updated last year
- ☆59Updated 3 years ago
- ☆22Updated last year
- This master thesis project continuously collects and analyses Microsoft Windows kernel drivers using static and dynamic methods to help s…☆21Updated 9 months ago
- WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware☆46Updated 3 years ago