FaEryICE / MemScannerLinks
Analyze Windows x64 Kernel Memory Layout
☆124Updated 4 years ago
Alternatives and similar repositories for MemScanner
Users that are interested in MemScanner are comparing it to the libraries listed below
Sorting:
- ☆115Updated 6 years ago
- ☆125Updated 5 years ago
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆96Updated 2 years ago
- Collect different versions of Crucial modules.☆144Updated last year
- 让Etwhook再次伟大! Make InfinityHook Great Again!☆143Updated 4 years ago
- 收集常用windows版本内核文件☆34Updated 2 years ago
- ☆159Updated 4 years ago
- ☆79Updated 3 years ago
- ☆69Updated 7 years ago
- This project migrated to https://github.com/backengineering/llvm-msvc☆144Updated 2 years ago
- Hide codes/data in the kernel address space.☆187Updated 4 years ago
- an encryption library designed for Windows kernel and driver programming☆119Updated 2 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆107Updated 3 years ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆110Updated 3 years ago
- An example of a client and server using Windows' ALPC functions to send and receive data.☆107Updated 9 months ago
- 之前学习X64VT写的代码,很多坑,但是大体的逻辑还是完整的。现发出来给更多想学VT的人参考...☆71Updated 4 years ago
- Collect various versions of ntoskrnl files☆57Updated last year
- It's a kernel-based keylogger for Windows x86/x64.☆141Updated 3 years ago
- Windows Driver Kit Extesion Header (Undoc)☆135Updated 3 years ago
- 《关于编写 x64 Windows 10 驱动以了解虚拟内存这件事》系列视频附带的代码和材料☆104Updated 2 years ago
- 之前那份是7600的,每次编译搞得好麻烦。更新一个VS2017可以直接编译的。☆152Updated 6 years ago
- Win7内核私有符号结构转储☆68Updated 4 years ago
- Process path modification x64☆58Updated 7 years ago
- win10 pgContext dynamic dump (btc version)☆107Updated 5 years ago
- a monitoring windows driver calls kernel api tools☆120Updated last year
- ShotHv☆148Updated 3 years ago
- WIN64驱动编程基础教程-源码 作者:胡文亮☆89Updated 7 years ago
- Intel Virtualization Technology demo☆69Updated 9 years ago
- the basic version of the ring0 physical memory read/write tool☆90Updated 6 years ago
- query-pdb is a server-side software for parsing PDB files. The software provides PDB online parsing service.☆158Updated last month