A Simple Example
☆23Nov 30, 2018Updated 7 years ago
Alternatives and similar repositories for KeUserModeCallBack
Users that are interested in KeUserModeCallBack are comparing it to the libraries listed below
Sorting:
- ☆34Apr 11, 2023Updated 2 years ago
- clearing traces of a loaded driver☆47Jul 2, 2022Updated 3 years ago
- ☆73Aug 31, 2022Updated 3 years ago
- How to use PiDqSerializationWrite. Introduces how to safely read and write from mapped driver☆26May 29, 2023Updated 2 years ago
- mash hypervisor host pml4☆17Jun 22, 2022Updated 3 years ago
- ☆17Jun 30, 2020Updated 5 years ago
- Easy Anti PatchGuard☆223Apr 9, 2021Updated 4 years ago
- Simulate SendInput with ClassService☆35Sep 5, 2018Updated 7 years ago
- ☆12Jun 30, 2019Updated 6 years ago
- ☆12Oct 12, 2021Updated 4 years ago
- This driver hooks a device object for ioctl and uses mdls to allocate physical pages and manually injects an entry into a process's page …☆15Feb 14, 2023Updated 3 years ago
- base for testing☆186Sep 28, 2024Updated last year
- ☆37May 21, 2022Updated 3 years ago
- Detect removed thread from PspCidTable.☆75Mar 18, 2022Updated 3 years ago
- Basic experimentation with Windows drivers.☆17Mar 3, 2023Updated 2 years ago
- Libraries written in inline assembly☆19Aug 7, 2023Updated 2 years ago
- Custom KiSystemStartup, can be used to modificate kernel before boot.☆53Apr 7, 2022Updated 3 years ago
- Experimental disassembler for x86 binaries virtualized by VMProtect 3☆97Aug 27, 2022Updated 3 years ago
- This project will give you an example how you can hook a kernel vtable function that cannot be directly called☆84Dec 25, 2021Updated 4 years ago
- 巨硬☆17Oct 4, 2023Updated 2 years ago
- IO隐藏通信封装☆17May 31, 2021Updated 4 years ago
- ☆17Apr 21, 2022Updated 3 years ago
- An example code of CiGetCertPublisherName☆17Mar 24, 2022Updated 3 years ago
- A resource for thread hijacking and manual mapping code, that works with MEM_MAPPED & MEM_IMAGE.☆26Apr 17, 2021Updated 4 years ago
- Static Library For Windows Drivers☆41Dec 13, 2025Updated 2 months ago
- Debug Print viewer (user and kernel)☆72Feb 7, 2024Updated 2 years ago
- ☆16Oct 31, 2022Updated 3 years ago
- Example of making debugger using Hardware Breakpoint + VEH☆18May 13, 2021Updated 4 years ago
- based on https://github.com/secrary/Hooking-via-InstrumentationCallback☆73Oct 29, 2019Updated 6 years ago
- ☆23Oct 28, 2020Updated 5 years ago
- Visual Studio template for GNU-EFI☆16May 16, 2022Updated 3 years ago
- Executes Read/Write process memory with `NtQueryCompositionSurfaceStatistics`☆23Feb 10, 2024Updated 2 years ago
- ☆49Feb 21, 2022Updated 4 years ago
- ☆68Dec 17, 2020Updated 5 years ago
- POC usermode <=> kernel communication via ALPC.☆72Jun 6, 2024Updated last year
- ☆31Oct 1, 2021Updated 4 years ago
- Header only library for binding, reordering and currying of function arguments without cost☆17Jun 20, 2018Updated 7 years ago
- Demo to show how write ALPC Client & Server using native Ntdll.dll syscalls.☆21Jan 25, 2022Updated 4 years ago
- ☆223Mar 11, 2023Updated 2 years ago