michael-fadely / usercall-hook
Generate inline assembly functions to wrap your replacement functions. Supports __usercall and __userpurge
☆15Updated last year
Alternatives and similar repositories for usercall-hook:
Users that are interested in usercall-hook are comparing it to the libraries listed below
- A way to detect DBI frameworks, Debuggers and VMs.☆22Updated 4 years ago
- Collection of IDA Pro/Hex-Rays configs, scripts, and plugins☆23Updated 5 years ago
- Personal curation of Clang/LLVM patches.☆13Updated 4 years ago
- a method for undetectable breakpoints in 32-bit Windows programs☆13Updated 10 years ago
- A dark x64dbg color theme based on IDA Consonance☆19Updated 6 years ago
- Windows x86 Hardware Breakpoint class for Windows >Vista☆22Updated 8 years ago
- Remote memory library in C++17.☆31Updated 6 years ago
- Windows NT port of 'Main is usually a function. So then when is it not?'☆25Updated last year
- A Binary Ninja plugin to deobfuscate Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆27Updated 8 months ago
- A lightweight x86/x64 VM☆18Updated 4 years ago
- Static library and headers for linking your software with ntdll.dll☆32Updated 5 years ago
- Analyze PatchGuard☆55Updated 6 years ago
- Plugin to label PEB addresses.☆29Updated 8 years ago
- RISC-V Disassembler☆18Updated 4 years ago
- A PE32/PE32+ parser written in MASM32☆13Updated 9 years ago
- Using Zydis and LLVM to lift unsupported instructions to LLVM-IR☆28Updated 3 years ago
- Proof of concept headless GUI DLL☆12Updated 3 years ago
- A slightly safer io access library☆13Updated 3 years ago
- A debugger backend for IDA Pro built on top of of Intel’s PIN framework☆31Updated last year
- An API Monitor based on Instrumentation☆43Updated 7 years ago
- Just an example of a well-known technique to detect memory tampering via Windows Working Sets.☆16Updated 3 years ago
- Plugin for x64dbg to break on unresolved APIs.☆12Updated 7 years ago
- ☆15Updated 2 years ago
- idenLib (Library Function Identification) plugin for x32dbg☆41Updated 6 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆35Updated 8 months ago
- A common set of helpers used across VTIL toolchain. Moved into -->☆20Updated 4 years ago
- ASUSTeK AsIO3 I/O driver unlock☆21Updated 3 years ago
- ☆16Updated 5 months ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆41Updated 3 years ago
- Allows you to parse all messages sent to DbgPrint without any process interaction.☆32Updated 4 years ago