bl4ckswan / anti-disassemblyLinks
☆21Updated 8 years ago
Alternatives and similar repositories for anti-disassembly
Users that are interested in anti-disassembly are comparing it to the libraries listed below
Sorting:
- virtualization obfuscator inspired by juhajong/vm-obfuscator☆58Updated 6 years ago
- ☆36Updated 3 years ago
- An API Monitor based on Instrumentation☆44Updated 8 years ago
- 大表哥的Syscall-Monitor☆34Updated 6 years ago
- Wow64 Heaven's Gate Hook☆29Updated 4 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆37Updated last year
- Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols)☆61Updated 2 years ago
- VMProtect analysis script☆56Updated 5 years ago
- VEH Redirect & VEH Debugger☆23Updated 5 years ago
- This is a simple driver with x64 inline assembly☆57Updated 5 years ago
- ☆15Updated 2 years ago
- Windbg extension that allows you analyze Control Flow Guard map☆38Updated 4 years ago
- a simple intel vt code both support x86 & x64. PatchGuard monitor.☆77Updated 4 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆79Updated 15 years ago
- vmp2.x devirtualization☆90Updated last year
- Driver demonstrating how to register a DPC to asynchronously wait on an object☆50Updated 5 years ago
- Example of hijacking system calls via function pointer tables☆31Updated 4 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆67Updated 2 years ago
- Скрытие строки от отладчиков и декомпиляторов☆51Updated 6 years ago
- Bootkits☆19Updated 2 years ago
- ☆21Updated 7 years ago
- win32/x64 obfuscate framework☆33Updated 6 years ago
- fix vmprotect import function used unicorn-engine.☆98Updated 2 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Updated 5 years ago
- Triton based symbolic emulator☆16Updated 3 years ago
- Rootkit & Anti-rootkit☆41Updated 2 years ago
- Detects if a Kernel mode debugger is active by reading the value of KUSER_SHARED_DATA.KdDebuggerEnabled. It is a high level and portable …☆23Updated 8 years ago
- a code virtualizer based on angr☆32Updated 3 years ago
- unicorn emulator for x64dbg☆34Updated 7 years ago
- Code-Reuse Exploits detection using Intel Processor Trace☆28Updated 7 years ago