leandrofroes / gftraceView external linksLinks
A command line Windows API tracing tool for Golang binaries.
☆159Dec 4, 2023Updated 2 years ago
Alternatives and similar repositories for gftrace
Users that are interested in gftrace are comparing it to the libraries listed below
Sorting:
- An automation plugin for Tiny-Tracer framework to trace and watch functions directly out of the executable's import table or trace logs (…☆125Jul 12, 2024Updated last year
- General malware analysis stuff☆37Aug 26, 2024Updated last year
- a PE Loader and Windows API tracer. Useful in malware analysis.☆143Sep 19, 2022Updated 3 years ago
- An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in gen…☆854Feb 2, 2024Updated 2 years ago
- ☆18Jan 21, 2026Updated 3 weeks ago
- Resources from Trend Micro Research teams☆26Nov 14, 2024Updated last year
- The MinHash-based Code Relationship & Investigation Toolkit (MCRIT) is a framework created to simplify the application of the MinHash alg…☆96Jan 13, 2026Updated last month
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆171Feb 5, 2026Updated last week
- Titan is a VMProtect devirtualizer☆117Mar 6, 2024Updated last year
- ☆126Feb 2, 2026Updated last week
- Go symbol recovery tool☆912Jan 13, 2026Updated last month
- Conteúdo do treinamento/brainstorming Introdução a engenharia reversa no Windows feito com muito carinho por mim.☆17Oct 13, 2022Updated 3 years ago
- ☆12Jan 18, 2026Updated 3 weeks ago
- Python C2 with JScript Implant☆15Nov 15, 2023Updated 2 years ago
- Highly advanced Linux anti-exploitation and anti-tamper binary protector for ELF.☆159Sep 3, 2022Updated 3 years ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆119Apr 8, 2023Updated 2 years ago
- Single header version of System Informer's phnt library.☆240Jan 9, 2026Updated last month
- ☆22May 24, 2024Updated last year
- Binary Ninja plugin to clean up some common obfuscation techniques.☆22Jun 8, 2020Updated 5 years ago
- A mechanism that trampoline hooks functions in x86/x64 systems.☆21Oct 9, 2024Updated last year
- SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also conta…☆478Jun 25, 2025Updated 7 months ago
- Hiew External Module (HEM) to calculate CRC-32, MD5, SHA-1, and SHA-256 hashes of a given file/block☆44Dec 17, 2024Updated last year
- Abusing Windows fork API and OneDrive.exe process to inject the malicious shellcode without allocating new RWX memory region.☆288May 27, 2024Updated last year
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆71Apr 18, 2024Updated last year
- The Definitive Guide To Process Cloning on Windows☆539Jan 3, 2024Updated 2 years ago
- LLVM based static binary analysis framework☆300Apr 2, 2025Updated 10 months ago
- Static Binary Instrumentation tool for Windows x64 executables☆207Sep 29, 2025Updated 4 months ago
- Black Angel is a Windows 11/10 x64 kernel mode rootkit. Rootkit can be loaded with enabled DSE while maintaining its full functionality.☆671Nov 9, 2023Updated 2 years ago
- Control-flow-flattening and string deobfuscator☆160Nov 8, 2021Updated 4 years ago
- Quickly debug shellcode extracted during malware analysis☆625May 23, 2023Updated 2 years ago
- A Pin Tool for tracing API calls etc☆1,612Nov 25, 2025Updated 2 months ago
- ☆31Feb 28, 2025Updated 11 months ago
- API Logger for Windows Executables☆80Sep 30, 2020Updated 5 years ago
- api-tracer is a tiny (useless) tracer☆17Feb 28, 2023Updated 2 years ago
- MalUnpack companion driver☆99Jun 17, 2024Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆27Aug 11, 2023Updated 2 years ago
- Small toolkit for extracting information and dumping sensitive strings from Windows processes☆116Jul 17, 2024Updated last year
- This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret …☆260Apr 29, 2023Updated 2 years ago
- Anti-virus artifacts. Listing APIs hooked by: Avira, BitDefender, F-Secure, MalwareBytes, Norton, TrendMicro, and WebRoot.☆753Nov 16, 2021Updated 4 years ago