Skip to content
View DanyDollaro's full-sized avatar
🤔
Looking for malwares...
🤔
Looking for malwares...

Block or report DanyDollaro

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
44 stars written in C
Clear filter

A little tool to play with Windows security

C 19,562 3,760 Updated Jul 5, 2024

A tiny immediate-mode UI library

C 3,563 250 Updated Aug 13, 2024

Fast and lightweight x86/x86-64 disassembler and code generation library

C 3,484 435 Updated Nov 8, 2024

Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware families do

C 3,443 465 Updated Jun 21, 2024

Compiler for the C3 language

C 3,070 184 Updated Dec 12, 2024

State-of-the-art native debugging tools

C 2,968 379 Updated Dec 11, 2024

Memory Debugger for Windows, Linux, Mac, and Android

C 2,465 262 Updated Oct 9, 2024

BlackLotus UEFI Windows Bootkit

C 1,997 468 Updated Mar 28, 2024

🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc

C 1,842 495 Updated Jul 13, 2022

Windows Object Explorer 64-bit

C 1,658 294 Updated Oct 12, 2024

proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC

C 1,150 279 Updated May 1, 2024

Access without a real handle

C 902 224 Updated Apr 10, 2021

Literally, the perfect injector.

C 883 195 Updated Apr 13, 2023

Minimalistic VT-x hypervisor with hooks

C 828 262 Updated Oct 18, 2019

The functions interception library written on pure C and NativeAPI with UserMode and KernelMode support

C 728 151 Updated Oct 10, 2023

Internals information about Hyper-V

C 666 89 Updated Sep 17, 2024

Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted file

C 632 113 Updated Mar 11, 2024

Evade sysmon and windows event logging

C 613 115 Updated Apr 8, 2020

UEFI bootkit for driver manual mapping

C 524 98 Updated Jan 1, 2024

kernel mode anti cheat

C 478 99 Updated Aug 4, 2024

Executes PowerShell from an unmanaged process

C 476 111 Updated Mar 17, 2016

The Definitive Guide To Process Cloning on Windows

C 444 40 Updated Jan 3, 2024

Manual mapper that uses PTE manipulation, Virtual Address Descriptor (VAD) manipulation, and forceful memory allocation to hide executable pages. (VAD hide / NX bit swapping)

C 291 88 Updated Jan 29, 2022

Ferris Sweep ZMK Configuration

C 273 135 Updated Oct 7, 2023

A simple program to hook the current process to identify the manual syscall executions on windows

C 248 45 Updated Nov 18, 2022

Lightweight type-1 hypervisor offering a foundation for building advanced security-focused functionality.

C 248 44 Updated Feb 18, 2022

Windows inline hooking tool.

C 233 65 Updated Oct 7, 2018

Document ETW providers

C 211 49 Updated Mar 28, 2020

PEI stage backdoor for UEFI compatible firmware

C 210 54 Updated May 1, 2021
Next