BlackOfWorld / Windows-NativeLinks
A wrapper around Windows, calls explicitly the lowest possible calls
☆14Updated 3 years ago
Alternatives and similar repositories for Windows-Native
Users that are interested in Windows-Native are comparing it to the libraries listed below
Sorting:
- Hooking Heavens Gate in a weekend☆13Updated 4 years ago
- Reduce Dynamic Analysis Detection Rates With Built-In Unhooker, Anti Analysis Techniques, And String Obfuscator Modules.☆21Updated 3 years ago
- Former UEFI Firmware Rootkit Replicating MoonBounce / ESPECTRE☆11Updated 3 years ago
- An attempt at reversing WindowsDefender☆20Updated last year
- ☆12Updated 3 years ago
- ☆18Updated 6 years ago
- Two C# RunPE's capable of x86 and x64 injections☆11Updated 7 years ago
- Listing UDP connections with remote address without sniffing.☆31Updated 2 years ago
- SoulExtraction is a windows driver library for extracting cert information in windows drivers☆25Updated 2 years ago
- XOrCryptEx lightweight C Utility/Algorithm☆11Updated 3 years ago
- Code Integrity Violation Spotter☆17Updated last year
- 💻 Windows 10 Kernel-mode rootkit☆32Updated 3 years ago
- A packed & protected Module Loader and more, for 64-bit Windows☆27Updated 4 years ago
- Tiny driver patch to allow kernel callbacks to work on Win10 21h1☆34Updated 3 years ago
- Process injection via KernelCallbackTable☆13Updated 3 years ago
- A Practical example of ELAM (Early Launch Anti-Malware)☆36Updated 4 years ago
- Learn Winapi in this Repo with examples, to understand its abstraction in reverse engineering for Windows.☆11Updated 3 years ago
- A PoC to demo modifying cmdline of the child process dynamically. It might be useful against process log tracing, AV or EDR.☆39Updated 5 years ago
- Clone running process with ZwCreateProcess☆59Updated 5 years ago
- Phantom DLL Hollowing method implemented in modmap☆18Updated 4 years ago
- ☆26Updated 2 years ago
- Create a C++ PE which loads an XTEA-crypted .NET PE shellcode in memory.☆17Updated 7 years ago
- ☆26Updated 3 years ago
- really ?☆12Updated last year
- Just another casual shellcode native loader☆25Updated 3 years ago
- A proof of concept of real custom GetProcAddress and GetModuleBaseAddress☆21Updated 3 years ago
- SetWinEventHook Sample☆50Updated 2 years ago
- Remote PE reflective injection with a simple reflective loader☆32Updated 6 years ago
- improving zerosums smbdoor - a silent remote backdoor which abuses undoc. APIs in srvnet.sys☆49Updated 2 years ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆18Updated 2 years ago