FaEryICE / MemScannerLinks
Analyze Windows x64 Kernel Memory Layout
☆122Updated 4 years ago
Alternatives and similar repositories for MemScanner
Users that are interested in MemScanner are comparing it to the libraries listed below
Sorting:
- ☆125Updated 5 years ago
- ☆113Updated 5 years ago
- 让Etwhook再次伟大! Make InfinityHook Great Again!☆141Updated 4 years ago
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆95Updated 2 years ago
- ☆65Updated 6 years ago
- Collect different versions of Crucial modules.☆143Updated last year
- Collect various versions of ntoskrnl files☆55Updated last year
- 收集常用windows版本内核文件☆34Updated last year
- ☆161Updated 4 years ago
- ☆81Updated 3 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆109Updated 3 years ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆111Updated 2 years ago
- Win7内核私有符号结构转储☆68Updated 3 years ago
- an encryption library designed for Windows kernel and driver programming☆117Updated 2 years ago
- This project migrated to https://github.com/backengineering/llvm-msvc☆145Updated last year
- 之前学习X64VT写的代码,很多坑,但是大体的逻辑还是完整的。现发出来给更多想学VT的人参考...☆69Updated 4 years ago
- Hide DLL / Hide Module / Hide Dynamic Link Library☆107Updated 6 years ago
- a monitoring windows driver calls kernel api tools☆112Updated last year
- An example of a client and server using Windows' ALPC functions to send and receive data.☆100Updated 6 months ago
- Windows Driver Kit Extesion Header (Undoc)☆135Updated 3 years ago
- win10 pgContext dynamic dump (btc version)☆108Updated 5 years ago
- 《关于编写 x64 Windows 10 驱动以了解虚拟内存这件事》系列视频附带的代码和材料☆102Updated 2 years ago
- the basic version of the ring0 physical memory read/write tool☆88Updated 5 years ago
- ShotHv☆145Updated 3 years ago
- 滥用cow机制进行全局注入☆98Updated 4 years ago
- Process path modification x64☆56Updated 7 years ago
- 之前那份是7600的,每次编译搞得好麻烦。更新一个VS2017可以直接编译的。☆151Updated 6 years ago
- Hook system calls, context switches, page faults and more.☆35Updated 6 years ago
- It's a kernel-based keylogger for Windows x86/x64.☆141Updated 2 years ago
- Hide codes/data in the kernel address space.☆189Updated 4 years ago