ricardojrdez / anti-analysis-tricksLinks
Bunch of techniques potentially used by malware to detect analysis environments
☆160Updated 9 years ago
Alternatives and similar repositories for anti-analysis-tricks
Users that are interested in anti-analysis-tricks are comparing it to the libraries listed below
Sorting:
- C++ application that uses memory and code hooks to detect packers☆273Updated 7 years ago
- ROPMEMU is a framework to analyze, dissect and decompile complex code-reuse attacks.☆289Updated 9 years ago
- ATrace is a tool for tracing execution of binaries on Windows.☆240Updated 3 weeks ago
- A kernel driver to practice writing exploits against, as well as some example exploits using public techniques.☆406Updated 11 years ago
- A tool to detect and crash Cuckoo Sandbox☆295Updated last year
- flare-dbg is a project meant to aid malware reverse engineers in rapidly developing debugger scripts.☆150Updated 8 years ago
- ☆91Updated 9 years ago
- I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016☆170Updated 9 years ago
- capstone based disassembler for extracting to binnavi☆230Updated 9 years ago
- hackers-grep is a utility to search for strings in PE executables including imports, exports, and debug symbols☆171Updated 7 years ago
- Detects code differentials between executables in disk and the corresponding processes/modules in memory☆115Updated 5 years ago
- Small tool for disassembling shellcode (using objdump)☆148Updated 3 years ago
- grap: define and match graph patterns within binaries☆172Updated 4 years ago
- Binary Ninja plugin to decompile binaries using RetDec API☆165Updated 7 years ago
- Example code from "Programming Linux Anti-Reversing Techniques"☆98Updated 8 years ago
- Basic command line, text-based, shellcode debugger.☆92Updated 8 years ago
- "Just Another ReVersIng Suite" or whatever other bullshit you can think of☆150Updated 2 years ago
- Linux bind shell with anti-reverse engineering techniques☆287Updated 8 years ago
- Loading unsigned code into kernel in Windows 10 (64) with help of VMware Workstation Pro/Player design flaw☆140Updated 8 years ago
- Simple shellcode decoder using unicorn-engine☆99Updated 10 years ago
- Cosa Nostra, a FOSS graph based malware clusterization toolkit.☆232Updated last year
- NASM Standard Library for shellcode☆69Updated 9 years ago
- Small tool for generating ropchains using unicorn and z3☆198Updated 7 years ago
- Your bag of handy codes for malware researchers☆120Updated 5 years ago
- A Tool to Unpack Self-Modifying Code using DynamoRIO☆141Updated 8 years ago
- Some tutorials and examples for generic unpacking JAVA, .NET and x86/x64 code☆51Updated 9 years ago
- PyAna - Analyzing the Windows shellcode☆247Updated 9 years ago
- C++-based shellcode builder☆115Updated 5 years ago
- Exploiting MS15-061 local Privilege escalation☆49Updated 10 years ago
- Implementation of the SMM rootkit "The Watcher"☆130Updated 3 years ago