blaquee / SlothEmuLinks
unicorn emulator for x64dbg
☆34Updated 7 years ago
Alternatives and similar repositories for SlothEmu
Users that are interested in SlothEmu are comparing it to the libraries listed below
Sorting:
- ☆37Updated 10 years ago
- Analyze PatchGuard☆57Updated 7 years ago
- An API Monitor based on Instrumentation☆44Updated 7 years ago
- Wow64 syscall hook☆42Updated 8 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆24Updated 8 years ago
- UNIPE - A small framwork to execute PE files with UniCorn☆47Updated 7 years ago
- ☆27Updated 6 years ago
- Intermediate x86 instruction representation for use in obfuscation/deobfuscation.☆60Updated 4 months ago
- 大表哥的Syscall-Monitor☆34Updated 6 years ago
- a binary x86win32 code obfuscator using virtual machine☆32Updated 8 years ago
- ☆14Updated 8 years ago
- This is a VmProtect integrated debugger, that will essentially allow you to disasm and debug vmp partially virtualized functions at the v…☆47Updated 9 years ago
- VMProtect analysis script☆54Updated 5 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆36Updated last year
- Windows sandbox PoC☆32Updated 5 years ago
- createfile☆49Updated 10 years ago
- it can extract functions from .dll, .exe, .sys and it be work! :)☆39Updated 6 years ago
- ☆38Updated 9 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆78Updated 14 years ago
- VEH Redirect & VEH Debugger☆23Updated 5 years ago
- Windows 10 kernel and ntdll internal types, directly compatible with ida.☆53Updated 7 years ago
- This is a simple driver with x64 inline assembly☆57Updated 5 years ago
- Window Executable file Function tracer using Debugging API☆44Updated 6 years ago
- Use WinDBG to trace the Windows API calls of any Portable Executable file☆31Updated 8 years ago
- win32/x64 obfuscate framework☆33Updated 6 years ago
- Helper utility for debugging windows PE/PE+ loader.☆52Updated 10 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆26Updated 11 years ago
- Kernel-mode file scanner☆19Updated 7 years ago
- ☆24Updated 7 years ago
- AllMemPro☆46Updated 7 years ago