HideProcessHook
anticuckoo
HideProcessHook | anticuckoo | |
---|---|---|
2 | 1 | |
242 | 284 | |
- | - | |
4.0 | 3.0 | |
12 months ago | 9 months ago | |
C | C | |
- | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
HideProcessHook
anticuckoo
-
Security research homelab, made with <3
To avoid detection of something like a cuckoo I would use https://github.com/nsmfoo/antivmdetection and test it with https://github.com/therealdreg/anticuckoo and https://github.com/LordNoteworthy/al-khaser
What are some alternatives?
bhook - :fire: ByteHook is an Android PLT hook library which supports armeabi-v7a, arm64-v8a, x86 and x86_64.
Mhook - A Windows API hooking library
subhook - Simple hooking library for C/C++ (x86 only, 32/64-bit, no dependencies)
cowrie - Cowrie SSH/Telnet Honeypot https://cowrie.readthedocs.io
dxwrapper - Fixes compatibility issues with older games running on Windows 10/11 by wrapping DirectX dlls. Also allows loading custom libraries with the file extension .asi into game processes.
Tripwire - Tripwire monitors ports and icmp to send the admin a message if somebody is scanning a machine that shouldn't be touched
WidescreenFixesPack - Plugins to make or improve widescreen resolutions support in games, add more features and fix bugs.
al-khaser - Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
trampoline - Trampoline is a static RTOS for small embedded systems. Its API is aligned with OSEK/VDX OS and AUTOSAR OS 4.2 standards.
logalert - Monitor logs (or any text files) and send alerts on specific changes.