Palle's repositories
antispy
AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and restore various kernel modifications and hooks.With its assistance,you can easily spot and neutralize malwares hidden from normal detectors.
Antivirus_R3_bypass_demo
分别用R3的0day与R0的0day来干掉杀毒软件
apex-external
My own shitty apex external with some noise features
BadCode
恶意代码逃逸源代码 http://payloads.online
d2dfortnite
full D2D fortnite cheat source. includes mouse event aimbot, d2d render, menu, box esp, distance esp, line esp & name esp.
dlinject
Inject a shared library (i.e. arbitrary code) into a live linux process, without ptrace
fun_android_flutter
👿👿👿👿👿玩Android客户端Flutter版本。Provider的最佳实践.DarkMode、多色彩主题、国际化、切换字体、优美动画
huoji_debuger
ayy debuger
krabsetw
KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.
LiteSDKGenerator
PUBG Lite SDK External Generator
Mapping-Injection
Just another Windows Process Injection
MemProcFS
The Memory Process File System
MINT
Contains the definitions for the Windows Internal UserMode API from ntdll.dll, samlib.dll and winsta.dll.
module_overloading
A more stealthy variant of "DLL hollowing"
owned_alignment
Hooking kernel functions by abusing alignment
PEExplorerV2
Portable Executable Explorer version 2
Review_Reverse
:wave:2019年末总结下今年做过的逆向,整理代码,复习思路。:pray:拼夕夕Web端anti_content参数逆向分析:japanese_goblin: WEB淘宝sign逆向分析;:smiley_cat:努比亚Cookie生成逆向分析;:raised_hands:百度指数data加密逆向分析 :footprints:今日头条WEB端_signature、as、cp参数逆向分析:notes:知乎登录formdata加密逆向分析 :clown_face:KNN猫眼字体反爬:tongue:Boss直聘Cookie加密字段__zp_stoken__逆向分析
RevokeMsgPatcher
:trollface: A hex editor for WeChat/QQ/TIM - PC版微信/QQ/TIM防撤回补丁(我已经看到了,撤回也没用了)
shellcodes
Shellcoding utilities (pure C) (Kernel : experimental_km branch) (Usermode: master)
simple-etw-provider
hello world ETW provider
smap
DLL scatter manual mapper
SyscallHook
System call hook for Windows 10 20H1
vcrtl
C++ Exceptions in Windows Drivers
Warface-wallhack-minimalistic
- No CRT and no IMPORTS - Without hook endscene and present - Without strings - Minimal code
wpp
Intercepting DeviceControl via WPP
XignCode-Implentation
XignCode implentation leak
XIL2CppDumper
IL2CppDumper writed in C++ by xia0