stonedreamforest / NaiHeQiao
open-source x86/x64 usermode anti-anti-debug plugin
☆221Updated 4 years ago
Alternatives and similar repositories for NaiHeQiao:
Users that are interested in NaiHeQiao are comparing it to the libraries listed below
- Hide Driver By MiProcessLoaderEntry☆284Updated 5 years ago
- pseudo-code to show how to disable patchguard with win10☆296Updated 7 years ago
- Some ways to inject a DLL into a alive process☆357Updated 6 years ago
- LLVM Obfuscator / constexpr / PEB CALL API☆174Updated 6 years ago
- FuckXC3☆89Updated 6 years ago
- Windows kernel mode driver to prevent detection of debuggers.☆96Updated 9 years ago
- kernel-mode Anti-Anti-Debug plugin. based on intel vt-x && ept technology☆431Updated 4 years ago
- PatchGuard Research☆295Updated 6 years ago
- VMProtect 3.x Anti-debug Method Improved☆551Updated 5 years ago
- Windows Ark 工具的工程和一些demo☆187Updated 8 years ago
- Exploiting CPU-Z Driver To Turn Load Unsigned Drivers☆126Updated 7 years ago
- 同时支持用户和内核模式的Inlinehook库☆120Updated 6 years ago
- An Ark tool project,run on Win7 x86/x64☆111Updated 7 years ago
- modify from memorymodule. support exception☆214Updated 4 years ago
- win32下的虚拟机保护壳☆139Updated 10 years ago
- Kernel Anit Anit Debug Plugins 内核反反调试插件☆457Updated 3 years ago
- Page fault hook use ept (Intel Virtualization Technology)☆180Updated 8 years ago
- ☆471Updated 8 years ago
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+☆726Updated 7 years ago
- ☆110Updated 5 years ago
- Open-source user-mode Anti-Anti-Debug plugin for x64dbg & cheatengine.☆195Updated 7 years ago
- ☆117Updated 6 years ago
- A VMP to VTIL lifter.☆428Updated 3 years ago
- StrongOD(anti anti-debug plugin) driver source code.☆114Updated 7 years ago
- kHypervisor is a lightweight bluepill-like nested VMM for Windows, it provides and emulating a basic function of Intel VT-x☆417Updated 3 years ago
- Hide codes/data in the kernel address space.☆188Updated 3 years ago
- 逆向火绒安全软件驱动——sysdiag☆151Updated 7 years ago
- x64dbg utility for linker map files, diff files, PEiD/IDA signatures, and code signature generation.☆282Updated 4 years ago
- An Attempt to Bypass Memory Scanners By Misusing the ntdll.dll "RT" Section.☆95Updated 9 years ago
- ☆224Updated 3 years ago