hasherezade / drawingsLinks
Some of my drawings
☆12Updated 3 years ago
Alternatives and similar repositories for drawings
Users that are interested in drawings are comparing it to the libraries listed below
Sorting:
- Set of antianalysis techniques found in malware☆131Updated 2 years ago
- Metadata hash incorporating the Rich Header for robustness against packing and other malware tricks☆69Updated 4 years ago
- Simple Polymorphic Engine (SPE32) is a simple polymorphic engine for encrypting code and data. It is an amateur project that can be used …☆151Updated 2 years ago
- Advanced driver monitoring utility.☆217Updated 3 years ago
- Enumerate user mode shared memory mappings on Windows.☆125Updated 4 years ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆144Updated 5 years ago
- An obfuscation tool for Windows which instruments the Windows Loader into acting as an unpacking engine.☆309Updated 7 years ago
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆216Updated 3 years ago
- ☆63Updated last year
- Command line utility for copying files on NTFS using low level disk access☆37Updated last year
- MalUnpack companion driver☆97Updated last year
- masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)☆126Updated 2 years ago
- Authenticode-parser is a simple C library for Authenticode format parsing using OpenSSL.☆19Updated last year
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆89Updated 9 years ago
- Blocks drivers from loading by using a name collision technique. #nsacyber☆50Updated 7 years ago
- A set of small utilities, helpers for PIN tracers☆34Updated 3 weeks ago
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆146Updated 6 years ago
- A local copy of Alex Ionescu's seemingly abandoned native-nt-toolkit project containing knowledge inherited from the ReactOS project.☆54Updated 6 years ago
- CLI program to calculate the entropy of files☆73Updated last year
- Windows System Programming Experiments☆223Updated 3 years ago
- Parsers for custom malware formats ("Funky malware formats")☆97Updated 3 years ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆256Updated 3 years ago
- A small library helping to parse commandline parameters (for C/C++)☆58Updated 5 months ago
- Windows Drivers☆98Updated 6 years ago
- A PE (Portable Executable) packer with Huffman Compression and Xor encryption.☆64Updated 4 years ago
- Virus Exchange (VX) - Collection of malware or assembly code used for "offensive" purposed.☆190Updated 2 months ago
- Leverage AMSI (Antimalware Scan Interface) technology to aid your analysis. This tool saves all buffers (scripts, .NET assemblies, etc) …☆112Updated 4 years ago
- A helper utility for creating shellcodes. Cleans MASM file generated by MSVC, gives refactoring hints.☆183Updated 6 months ago
- Runs programs as TrustedInstaller☆49Updated 6 years ago
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆145Updated 2 years ago