IntelSDM / PEFromMemoryLinks
Executing EXE Files From Memory
☆11Updated 2 years ago
Alternatives and similar repositories for PEFromMemory
Users that are interested in PEFromMemory are comparing it to the libraries listed below
Sorting:
- Freeze target threads (external - internal ) by avoiding SuspendThread detections. Or access registers from start address.☆34Updated last year
- UM-KM Communication using registry callbacks☆39Updated 5 years ago
- Virtual and physical memory hacking library using gigabyte vulnerable driver☆70Updated 2 years ago
- A simple MmCopyMemory hook.☆37Updated 3 years ago
- Kernel<->Usermode shared memory communcation using manually mapped driver☆21Updated 4 years ago
- A simple present scene, kernel allocation injector.☆26Updated 3 years ago
- PE Header (.rdata,.data,.text) obsfucation☆36Updated 3 years ago
- Dumping processes using a kernel-mode driver.☆20Updated 4 years ago
- Allows for same-file KernelMode function execution using Encrypted addresses of Functions☆48Updated 4 months ago
- ☆43Updated 2 years ago
- Bypass using kernel driver (not finish).☆20Updated 2 years ago
- Made by scammer so i leak for free ! have fun☆56Updated 2 years ago
- ☆36Updated 3 years ago
- ☆59Updated 2 years ago
- ☆63Updated 3 years ago
- Hiding a system thread against conventional means of detection☆41Updated 5 years ago
- Passthrough anti-cheat with this kernel-driver based on guided hacking tutorial☆11Updated 4 years ago
- An other Detected & Pasted driver☆24Updated 3 years ago
- ☆27Updated 2 years ago
- ☆16Updated 3 years ago
- PAGE_GUARD based hooking library☆52Updated 3 years ago
- ☆17Updated 5 years ago
- POC Windows kernel driver that spoofs threads for NMI callbacks on x86-64.☆24Updated 10 months ago
- communicate with kernel using a image on disk☆16Updated last year
- ☆43Updated 4 years ago
- ☆13Updated 2 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆102Updated 2 years ago
- POC kernel driver with hidden system thread☆13Updated last year
- Register a callback from a Manually mapped kernel module☆15Updated 3 years ago
- 将驱动映射到会话空间☆38Updated 3 years ago