pr0fdr4c / KOLOR
☆12Updated this week
Related projects: ⓘ
- A collection of anti disassembly techniques☆18Updated 7 years ago
- ☆21Updated 3 years ago
- ☆23Updated this week
- Windows x64 Process Scanner to detect application compatability shims☆37Updated 5 years ago
- Currently proof-of-concept☆16Updated 2 years ago
- An opensource API hooking framework☆21Updated 4 years ago
- A wrapper for capstone for bearparser☆13Updated last year
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 6 years ago
- Code Integrity Violation Spotter☆16Updated 3 months ago
- ☆12Updated this week
- ☆16Updated 2 years ago
- NoREpls - Application designed for the purposes of reverse engineering.☆10Updated 6 years ago
- Using Undocumented NTDLL Functions to Read/Write/Delete File☆18Updated 3 years ago
- Windows x86 Hardware Breakpoint class for Windows >Vista☆22Updated 8 years ago
- ☆16Updated this week
- Collection of IDA Pro/Hex-Rays configs, scripts, and plugins☆22Updated 4 years ago
- A set of small utilities, helpers for PIN tracers☆31Updated 11 months ago
- ☆11Updated this week
- Static library and headers for linking your software with ntdll.dll☆30Updated 4 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- ☆13Updated 3 years ago
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆57Updated last month
- Windbg extension that allows you analyze Control Flow Guard map☆34Updated 2 years ago
- ☆28Updated 4 years ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆15Updated last year
- ASProtect reverse engineering & analysis WinDbg extension☆20Updated 3 years ago
- ☆18Updated 5 years ago
- A Windows API hooking library !☆30Updated 2 years ago
- genpatch is IDA plugin that generates a python script for patching binary☆30Updated 9 months ago