Fyyre / kerneldetectiveView external linksLinks
Kernel Detective
☆151Aug 12, 2022Updated 3 years ago
Alternatives and similar repositories for kerneldetective
Users that are interested in kerneldetective are comparing it to the libraries listed below
Sorting:
- Advanced driver monitoring utility.☆218Jul 13, 2022Updated 3 years ago
- Detects if a Kernel mode debugger is active by reading the value of KUSER_SHARED_DATA.KdDebuggerEnabled. It is a high level and portable …☆23Sep 18, 2017Updated 8 years ago
- win10 pgContext dynamic dump (btc version)☆110Jan 15, 2020Updated 6 years ago
- HAXM hypervisor client☆18Nov 30, 2018Updated 7 years ago
- ☆19Jul 20, 2015Updated 10 years ago
- Remote memory library in C++17.☆34May 31, 2018Updated 7 years ago
- Шаблон полнофункционального драйвера и обёртки над ядерным API☆114Aug 28, 2016Updated 9 years ago
- Confirms the capability of Hardware-Accelerated Virtualization Technology.☆10Oct 26, 2025Updated 3 months ago
- ☆68Dec 17, 2020Updated 5 years ago
- Taking advantage of CRT initialization, to get away with hooking protected applications☆48Nov 2, 2022Updated 3 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆53Mar 12, 2024Updated last year
- 一些研究☆14Dec 18, 2019Updated 6 years ago
- Windows_OS_Internals_Curriculum_Resource_Kit-ACADEMIC☆27Nov 17, 2018Updated 7 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆110Apr 24, 2020Updated 5 years ago
- createfile☆50Oct 27, 2015Updated 10 years ago
- codes for my blog post: https://secrary.com/Random/InstrumentationCallback/☆183Nov 30, 2017Updated 8 years ago
- a demo for x86/x64's paging memory management learning, convert a virtual address from ring3 to physical address in ring0☆19Aug 26, 2017Updated 8 years ago
- C++17 PE manualmapper☆431Oct 2, 2021Updated 4 years ago
- Different ways to get the HDD Serial☆39Apr 7, 2018Updated 7 years ago
- A hypervisor hiding user-mode memory using EPT☆107Jan 28, 2018Updated 8 years ago
- ☆109Nov 13, 2023Updated 2 years ago
- kernel-mode TDI client which can send and receive HTTP requests☆56Jun 9, 2018Updated 7 years ago
- fyyre.l2-fashion.de .. old site☆17Apr 27, 2022Updated 3 years ago
- x64 Windows implementation of virtual-address to physical-address translation☆46Jun 3, 2021Updated 4 years ago
- ☆34Jul 28, 2018Updated 7 years ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆239Nov 6, 2019Updated 6 years ago
- PatchGuard Research☆304Oct 6, 2018Updated 7 years ago
- A sample on how to inject a DLL from a kernel driver☆61Sep 13, 2016Updated 9 years ago
- This is the first software system, which can detect a stealthy hypervisor and calculate several nested ones even under countermeasures.☆87Jun 16, 2015Updated 10 years ago
- MemoryRanger protects kernel data and code by running drivers and hosting data in isolated kernel enclaves using VT-x and EPT features. M…☆232Jul 26, 2020Updated 5 years ago
- Windows Kernel Template Library☆114Sep 13, 2022Updated 3 years ago
- Driver demonstrating how to register a DPC to asynchronously wait on an object☆50Jan 15, 2021Updated 5 years ago
- Kernel LdrLoadDll injector☆264Oct 6, 2018Updated 7 years ago
- Shareds for kernel developement☆29Dec 23, 2013Updated 12 years ago
- Disable Driver Callbacks☆104Oct 16, 2017Updated 8 years ago
- Simple header only library to change return address on current stack frame.☆22Sep 4, 2016Updated 9 years ago
- Hypervisor based tool for monitoring system register accesses.☆153Sep 13, 2018Updated 7 years ago
- Intel Virtualization Technology demo☆73Oct 15, 2016Updated 9 years ago
- Win64/Rovnix - Volume Boot Record Bootkit☆177Jul 30, 2015Updated 10 years ago