eschweiler / ProReversingLinks
Open and generic Anti-Anti Reversing Framework. Works in 32 and 64 bits.
☆66Updated 12 years ago
Alternatives and similar repositories for ProReversing
Users that are interested in ProReversing are comparing it to the libraries listed below
Sorting:
- modify binary Portable Executable to hook its export functions☆65Updated 6 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆78Updated 10 years ago
- Helper utility for debugging windows PE/PE+ loader.☆52Updated 10 years ago
- PoC for detecting and dumping code injection (built and extended on UnRunPE)☆57Updated 6 years ago
- A session-0 capable dll injection utility☆76Updated 7 years ago
- OllyCallTrace is a plugin for OllyDbg to trace the call chain of a thread.☆54Updated 13 years ago
- Load a Windows Kernel Driver☆94Updated 8 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub☆80Updated 13 years ago
- Anti-technique Codes, Detection of Anti-technique codes☆38Updated 11 years ago
- ☆81Updated 7 years ago
- Kernel mode driver loader, injecting into the windows kernel, Rootkit. Driver injections.☆48Updated 10 years ago
- simple PE packer written in C++☆56Updated 7 years ago
- Analyze and attack windows applications using dll hijacking vulnerabilities☆59Updated 6 years ago
- Windows anti-rootkit library☆37Updated 10 years ago
- Adding exceptions to Microsoft's Control Flow Guard (CFG)☆57Updated 9 years ago
- Simple proof of concept code for injecting libraries on 64bit processes from a 32bit process☆96Updated 6 years ago
- A command line tool to load and unload a device driver.☆47Updated 8 years ago
- Simple PE packer with RtlCompressBuffer☆21Updated 10 years ago
- Windows 10 kernel and ntdll internal types, directly compatible with ida.☆53Updated 6 years ago
- User-mode hook bypassing method☆33Updated 9 years ago
- library, which help to describe or load and execute PE files.☆55Updated 12 years ago
- This is a VmProtect integrated debugger, that will essentially allow you to disasm and debug vmp partially virtualized functions at the v…☆47Updated 8 years ago
- PCAUSA Rawether for Windows Local Privilege Escalation☆39Updated 8 years ago
- Code Injection technique written in cpp language☆33Updated 7 years ago
- Use WinDBG to trace the Windows API calls of any Portable Executable file☆31Updated 8 years ago
- User-mode process cross-checking utility intended to detect naive malware hiding itself by hooking IAT/EAT.☆19Updated 9 years ago
- Hidden kernel mode code execution for bypassing modern anti-rootkits.☆85Updated 14 years ago
- OllyHeapTrace is a plugin for OllyDbg to trace the heap operations being performed by a process.☆56Updated 13 years ago
- PoC for detecting and dumping process hollowing code injection☆52Updated 6 years ago
- a binary x86win32 code obfuscator using virtual machine☆32Updated 8 years ago