ufrisk / LeechCore-plugins
Plugins related to LeechCore
☆29Updated last week
Related projects: ⓘ
- Fetch PDB symbols directly from Microsoft's symbol servers☆41Updated 2 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆57Updated last year
- ASUSTeK AsIO3 I/O driver unlock☆19Updated 3 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- ☆28Updated 4 years ago
- IntroVirt is an guest introspection library for KVM☆49Updated 2 weeks ago
- SigMaker plugin for Binary Ninja☆9Updated 4 years ago
- (DEPRECATED) A simple anti-anti debug library for Windows☆29Updated 4 years ago
- A reflexive driver loader to bypass Windows DSE (featuring a custom PE loader)☆37Updated 6 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆69Updated last year
- Скрытие строки от отладчиков и декомпиляторов☆51Updated 4 years ago
- Simple x64dbg plugin to save a full memory dump☆49Updated last year
- A simple and heavily documented series of test hypervisors built for 64-bit Windows 10 systems running under Intel's VT-x☆29Updated 3 years ago
- This is a simple driver with x64 inline assembly☆52Updated 4 years ago
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆31Updated last year
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆57Updated 3 weeks ago
- Retrieve pointers to undocumented kernel functions and offsets to members within undocumented structures to use in your driver by using t…☆52Updated 5 years ago
- ☆56Updated 2 years ago
- devirtualization vmprotect☆59Updated last year
- ☆15Updated this week
- Allows you to find the use of ScyllaHide, if your program will debug and restore hooking functions bytes.☆22Updated 5 years ago
- ☆64Updated 3 years ago
- EDR PoC WIP LLC☆10Updated 7 months ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆33Updated 2 years ago
- Binary Ninja plugin that can be used to apply Triton's dead store eliminitation pass on basic blocks or functions.☆56Updated 2 months ago
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆72Updated 3 years ago
- Simple code generation library developed in C intended for code generation in Kernel mode☆16Updated last year
- SoulExtraction is a windows driver library for extracting cert information in windows drivers☆20Updated last year
- An automatic tool for fixing dumped PE files☆42Updated 4 years ago
- ☆40Updated this week