FaEryICE / MemScannerLinks
Analyze Windows x64 Kernel Memory Layout
☆129Updated 5 years ago
Alternatives and similar repositories for MemScanner
Users that are interested in MemScanner are comparing it to the libraries listed below
Sorting:
- ☆116Updated 6 years ago
- ☆127Updated 5 years ago
- 让Etwhook再次伟大! Make InfinityHook Great Again!☆147Updated 4 years ago
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆97Updated 2 years ago
- ☆74Updated 7 years ago
- Collect different versions of Crucial modules.☆144Updated last year
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆107Updated 3 years ago
- ☆163Updated 5 years ago
- 收集常用windows版本内核文件☆35Updated 2 years ago
- ☆81Updated 3 years ago
- an encryption library designed for Windows kernel and driver programming☆123Updated 2 years ago
- 之前学习X64VT写的代码,很多坑,但是大体的逻辑还是完整的。现发出来给更多想学VT的人参考...☆71Updated 4 years ago
- Windows Driver Kit Extesion Header (Undoc)☆135Updated 4 years ago
- Win7内核私有符号结构转储☆70Updated 4 years ago
- 《关于编写 x64 Windows 10 驱动以了解虚拟内存这件事》系列视频附带的代码和材料☆105Updated 2 years ago
- Process path modification x64☆59Updated 7 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆107Updated 3 years ago
- 之前那份是7600的,每次编译搞得好麻烦。更新一个VS2017可以直接编译的。☆154Updated 6 years ago
- 不使用3环挂钩进行DWM桌面绘制☆81Updated 4 years ago
- Collect various versions of ntoskrnl files☆59Updated 2 years ago
- Intel Virtualization Technology demo☆70Updated 9 years ago
- win10 pgContext dynamic dump (btc version)☆107Updated 6 years ago
- This project migrated to https://github.com/backengineering/llvm-msvc☆145Updated 2 years ago
- the basic version of the ring0 physical memory read/write tool☆92Updated 6 years ago
- Hide codes/data in the kernel address space.