hfiref0x / VBoxHardenedLoaderLinks
VirtualBox VM detection mitigation loader
☆953Updated 2 years ago
Alternatives and similar repositories for VBoxHardenedLoader
Users that are interested in VBoxHardenedLoader are comparing it to the libraries listed below
Sorting:
- Script to create templates to use with VirtualBox to make vm detection harder☆759Updated 2 years ago
- InviZzzible is a tool for assessment of your virtual environments in an easy and reliable way. It contains the most recent and up to date…☆571Updated 3 years ago
- Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that…☆3,792Updated last year
- Demos of various injection techniques found in malware☆792Updated 3 years ago
- Virtualbox, VirtualMachine, Cuckoo, Anubis, ThreatExpert, Sandboxie, QEMU, Analysis Tools Detection Tools☆458Updated 6 years ago
- Driver loader for bypassing Windows x64 Driver Signature Enforcement☆1,147Updated 6 years ago
- makin - reveal anti-debugging and anti-VM tricks [This project is not maintained anymore]☆740Updated 6 years ago
- Portable Executable parsing library (from PE-bear)☆657Updated last week
- Disable PatchGuard and Driver Signature Enforcement at boot time☆2,133Updated 2 months ago
- Windows x64 Driver Signature Enforcement Overrider☆763Updated 6 years ago
- Universal PatchGuard and Driver Signature Enforcement Disable☆851Updated 6 years ago
- A static analyzer for PE executables.☆1,085Updated last year
- Imports Reconstructor☆1,264Updated 2 years ago
- Vmware Hardened VM detection mitigation loader (anti anti-vm)☆2,083Updated 2 years ago
- xAnalyzer plugin for x64dbg☆1,138Updated 2 months ago
- Windows Object Explorer 64-bit☆1,820Updated last week
- proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC☆1,251Updated last year
- Protected Processes Light Killer☆948Updated 2 years ago
- DRAKVUF Black-box Binary Analysis☆1,167Updated last week
- Turn off PatchGuard in real time for win7 (7600) ~ later☆1,023Updated 3 years ago
- Windows NT Syscall tables☆1,330Updated last month
- Hiding kernel-driver for x86/x64.☆2,482Updated last month
- ☆244Updated 11 years ago
- A basic Direct Kernel Object Manipulation rootkit that removes a process from the EPROCESS list, hiding it from the Task Manager☆685Updated 6 years ago
- Automatic and platform-independent unpacker for Windows binaries based on emulation☆715Updated last month
- Load self-signed drivers without TestSigning or disable DSE. Transferred from https://github.com/DoubleLabyrinth/Windows10-CustomKernelSi…☆756Updated 5 years ago
- Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-mem…☆3,457Updated last month
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl☆1,284Updated 4 months ago
- PE Tools - Portable executable (PE) manipulation toolkit☆1,131Updated 7 years ago
- A collection of x64dbg scripts. Feel free to submit a pull request to add your script.☆528Updated last year