Extract Windows Defender database from vdm files and unpack it
Miscellaneous Code and Docs
Authenticode Hash Calculator for PE32/PE32+ files
Windows NT x64 Syscall tables
Small x86-32/x64 FTP Server
Defeating Windows User Account Control
Windows Object Explorer 64-bit
Windows NT x64 syscall fuzzer
Archive repository for fast fact-checks
ASUSTeK AsIO3 I/O driver unlock
Enumerate Windows Defender threat families and dump their names according category
Universal PatchGuard and Driver Signature Enforcement Disable
(This is a fork used primarily to submit patches into upstream repository) Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
(This is a fork used primarily to submit patches into upstream repository) pdbex is a utility for reconstructing structures and unions from the PDB into compilable C headers
ReactOS x86-32 syscall fuzzer
Driver loader for bypassing Windows x64 Driver Signature Enforcement
VirtualBox VM detection mitigation loader