zodiacon / InterceptionDemo
Sample showing the use of CoGetInterceptor
☆21Updated 3 years ago
Alternatives and similar repositories for InterceptionDemo:
Users that are interested in InterceptionDemo are comparing it to the libraries listed below
- Static analysis tools for x86 assembly☆13Updated 8 years ago
- ☆33Updated 7 years ago
- ☆28Updated 7 years ago
- Malware monitor template based on MinHook☆16Updated 9 years ago
- Helper utility for debugging windows PE/PE+ loader.☆52Updated 10 years ago
- Anti-AV compilation☆42Updated 11 years ago
- windows create process with a dll load first time via LdrHook☆30Updated 8 years ago
- CVE-2014-0816☆25Updated 8 years ago
- A sample project for using Capstone from a driver in Visual Studio 2015☆34Updated 8 years ago
- ☆28Updated 9 years ago
- Sample libraries to be used with IAT Patcher☆33Updated 2 years ago
- Various libraries focused on examining/parsing NTFS-specific structures☆16Updated 9 years ago
- Windows hard shutdown shellcode. Don't need administrator rights.☆12Updated 8 years ago
- User-mode process cross-checking utility intended to detect naive malware hiding itself by hooking IAT/EAT.☆19Updated 9 years ago
- PCAUSA Rawether for Windows Local Privilege Escalation☆38Updated 8 years ago
- Decrement Windows Kernel for fun and profit☆38Updated 7 years ago
- A simple exploitable ActiveX control for RE/VR☆19Updated 10 years ago
- An IDA Pro script for creating a clearer idb for nymaim malware☆10Updated 6 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆29Updated 7 years ago
- RunPE dump - I wrote this to have better control over the analysis of malwares. I can stop and analysis malware when it uses some of the …☆10Updated 9 years ago
- C++ wrapper for YARA.☆45Updated 5 years ago
- A rootkit implemented as a linux kernel module☆17Updated 9 years ago
- Scripts to prepare Windows system for debugging.☆30Updated 4 years ago
- ☆18Updated 5 years ago
- ☆45Updated 6 years ago
- ☆32Updated 9 months ago
- OllyHeapTrace is a plugin for OllyDbg to trace the heap operations being performed by a process.☆54Updated 13 years ago
- User-mode program parsing logs created by HyperPlatform☆18Updated 8 years ago
- Malpimp is an advanced API tracing tool and designed to automate the reverse engineering process. In the backend it uses pydbg to hook t…☆8Updated 8 years ago
- A toolset to assess the behavioral capabilities of AV/HIPS software☆8Updated 11 years ago