bl4ckswan / anti-disassemblyLinks
☆21Updated 8 years ago
Alternatives and similar repositories for anti-disassembly
Users that are interested in anti-disassembly are comparing it to the libraries listed below
Sorting:
- virtualization obfuscator inspired by juhajong/vm-obfuscator☆57Updated 5 years ago
- ☆36Updated 3 years ago
- 大表哥的Syscall-Monitor☆34Updated 6 years ago
- Triton based symbolic emulator☆16Updated 3 years ago
- VMProtect analysis script☆54Updated 5 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆78Updated 14 years ago
- An API Monitor based on Instrumentation☆44Updated 7 years ago
- VEH Redirect & VEH Debugger☆23Updated 5 years ago
- Wow64 Heaven's Gate Hook☆29Updated 4 years ago
- Скрытие строки от отладчиков и декомпиляторов☆51Updated 6 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆53Updated last year
- This is a simple driver with x64 inline assembly☆57Updated 5 years ago
- A debugger backend for IDA Pro built on top of of Intel’s PIN framework☆35Updated last year
- Library for using direct system calls☆36Updated 10 months ago
- Windbg extension that allows you analyze Control Flow Guard map☆36Updated 4 years ago
- fork HoShiMin Avanguard☆21Updated 7 years ago
- Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)☆61Updated 2 years ago
- [deprecated] Simple x64dbg plugin to save a full memory dump☆50Updated 3 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆37Updated last year
- ☆21Updated 7 years ago
- Enables x64 applications to call any x86 function through a special function called X86Call☆18Updated 9 years ago
- it can extract functions from .dll, .exe, .sys and it be work! :)☆39Updated 6 years ago
- ☆40Updated 6 years ago
- a simple intel vt code both support x86 & x64. PatchGuard monitor.☆76Updated 4 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆67Updated 2 years ago
- Yet another windows syscall library☆19Updated 5 years ago
- win32/x64 obfuscate framework☆33Updated 6 years ago
- ☆15Updated 2 years ago
- clone of armadillo patched for windows☆48Updated last year
- A demonstration of how page tables can be used to run arbitrary code in ring-0 and lead to a privesc. Uses CVE-2016-7255 as an example.☆11Updated 7 years ago