wanttobeno / AntiVirtualMachine
8种检测虚拟机方法
☆102Updated 6 years ago
Alternatives and similar repositories for AntiVirtualMachine:
Users that are interested in AntiVirtualMachine are comparing it to the libraries listed below
- 一个用来做windows内核hook的框架☆86Updated this week
- 轻量级自动分析病毒程序调用上下文、游戏反调试实现技术平台☆99Updated 4 years ago
- ☆13Updated last year
- 加载内存当中的DLL文件☆84Updated 6 years ago
- 逆向火绒安全软件驱动——sysdiag☆153Updated 7 years ago
- Windows内核安全与驱动开发书附赠的光盘源码☆91Updated 7 years ago
- WIN64驱动编程基础教程-源码 作者:胡文亮☆88Updated 7 years ago
- ☆97Updated 3 years ago
- ☆197Updated 2 years ago
- use python script to fix vmp dump api in ida☆117Updated 4 years ago
- 快速内存搜索算法,商用级别☆127Updated 6 years ago
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆93Updated 2 years ago
- 研究和移除各种内核回调,在anti anti cheat的路上越走越远☆173Updated 2 years ago
- InstDrv v2☆35Updated 8 months ago
- Mhy Exp (exploit signed driver)☆140Updated 2 years ago
- 之前学习X64VT写的代码,很多坑,但是大体的逻辑还是完整的。现发出来给更多想学VT的人参考...☆68Updated 3 years ago
- dll转shellcode工具☆100Updated 5 years ago
- ida提取特征码脚本☆55Updated 5 years ago
- 模仿PCHUNTER的ARK工具☆38Updated 5 years ago
- 反射式注入☆28Updated 6 years ago
- ☆110Updated 5 years ago
- ☆81Updated 4 years ago
- Radical Windows ARK☆232Updated last week
- Changes handle's access rights using DKOM with a vulnerable driver☆25Updated 7 years ago
- 可在非测试模式下符 号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆106Updated 2 years ago
- ☆80Updated 3 years ago
- a simple assembly engine which is based on LLVM you don't have to worry about its core because LLVM they do it better.☆47Updated 3 years ago
- query-pdb is a server-side software for parsing PDB files. The software provides PDB online parsing service.☆149Updated 7 months ago
- 远程注入无导入函数dll,自动重定位以后内存加载dll☆45Updated 5 years ago
- 内核级别隐藏指定窗口☆305Updated 3 years ago