bl4ckswan / anti-disassemblyLinks
☆21Updated 8 years ago
Alternatives and similar repositories for anti-disassembly
Users that are interested in anti-disassembly are comparing it to the libraries listed below
Sorting:
- virtualization obfuscator inspired by juhajong/vm-obfuscator☆57Updated 5 years ago
- ☆36Updated 3 years ago
- 大表哥的Syscall-Monitor☆34Updated 6 years ago
- An API Monitor based on Instrumentation☆43Updated 7 years ago
- VMProtect analysis script☆55Updated 5 years ago
- VEH Redirect & VEH Debugger☆23Updated 5 years ago
- Triton based symbolic emulator☆16Updated 2 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆36Updated last year
- ☆60Updated 3 years ago
- This is a simple driver with x64 inline assembly☆57Updated 5 years ago
- unicorn emulator for x64dbg☆34Updated 7 years ago
- Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)☆62Updated 2 years ago
- ☆41Updated 5 years ago
- Simple x64dbg plugin to save a full memory dump☆50Updated 2 years ago
- Yet another windows syscall library☆18Updated 5 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆67Updated 2 years ago
- Wow64 Heaven's Gate Hook☆28Updated 4 years ago
- vmp2.x devirtualization☆78Updated 10 months ago
- LLVM obfuscation pass, flattening at the basic block's level and turning each basic block into a dispacher and each instruction into a ne…☆47Updated 4 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆53Updated last year
- Simple DLL and client app that work together to hook all the functions in WinHvPlatform.dll in order to provide logging and introspection…☆18Updated 3 years ago
- Windbg extension that allows you analyze Control Flow Guard map☆36Updated 3 years ago
- A debugger backend for IDA Pro built on top of of Intel’s PIN framework☆33Updated last year
- a simple intel vt code both support x86 & x64. PatchGuard monitor.☆76Updated 3 years ago
- A demonstration of how page tables can be used to run arbitrary code in ring-0 and lead to a privesc. Uses CVE-2016-7255 as an example.☆11Updated 7 years ago
- vm -- code interpreter☆25Updated 6 years ago
- ☆15Updated 2 years ago
- win32/x64 obfuscate framework☆33Updated 6 years ago
- ☆19Updated 6 years ago
- Enables x64 applications to call any x86 function through a special function called X86Call☆17Updated 9 years ago