FaEryICE / MemScanner
Analyze Windows x64 Kernel Memory Layout
☆121Updated 4 years ago
Alternatives and similar repositories for MemScanner:
Users that are interested in MemScanner are comparing it to the libraries listed below
- ☆110Updated 5 years ago
- ☆123Updated 4 years ago
- ☆157Updated 4 years ago
- 让Etwhook再次伟大! Make InfinityHook Great Again!☆134Updated 3 years ago
- Collect different versions of Crucial modules.☆131Updated 9 months ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆106Updated 2 years ago
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆93Updated 2 years ago
- ☆80Updated 3 years ago
- ShotHv☆139Updated 3 years ago
- 收集常用windows版本内核文件☆31Updated last year
- query-pdb is a server-side software for parsing PDB files. The software provides PDB online parsing service.☆149Updated 7 months ago
- 《关于编写 x64 Windows 10 驱动以了解虚拟内存这件事》系列视频附带的代码和材料☆102Updated 2 years ago
- 之前那份是7600的,每次编译搞得好麻烦。更新一个VS2017可以直接编译的。☆149Updated 5 years ago
- This project migrated to https://github.com/backengineering/llvm-msvc☆141Updated last year
- Hide codes/data in the kernel address space.☆188Updated 3 years ago
- 大数字驱动逆向代码☆71Updated last year
- ☆179Updated last year
- ☆65Updated 6 years ago
- sc4cpp is a shellcode framework based on C++☆88Updated 3 years ago
- ☆165Updated 3 years ago
- Process path modification x64☆54Updated 6 years ago
- ☆197Updated 2 years ago
- Intel Virtualization Technology demo☆65Updated 8 years ago
- ☆132Updated 2 years ago
- InfinityHook 支持Win7 到 Win11 最新版本,虚拟机环境及物理机环境☆56Updated 6 months ago
- Hook NtDeviceIoControlFile with PatchGuard☆105Updated 2 years ago
- An Ark tool project,run on Win7 x86/x64☆114Updated 7 years ago
- Windows Driver Kit Extesion Header (Undoc)☆136Updated 3 years ago
- ☆52Updated 2 years ago
- Win7内核私有符号结构转储☆67Updated 3 years ago