M00nRise / ProcessHiderLinks
Post-exploitation tool for hiding processes from monitoring applications
β737Updated last year
Alternatives and similar repositories for ProcessHider
Users that are interested in ProcessHider are comparing it to the libraries listed below
Sorting:
- π DLL/Shellcode injection techniquesβ704Updated 6 years ago
- A basic Direct Kernel Object Manipulation rootkit that removes a process from the EPROCESS list, hiding it from the Task Managerβ676Updated 6 years ago
- Protected Processes Light Killerβ928Updated 2 years ago
- Driver loader for bypassing Windows x64 Driver Signature Enforcementβ1,124Updated 5 years ago
- Universal PatchGuard and Driver Signature Enforcement Disableβ843Updated 6 years ago
- proof-of-concept Windows Driver for injecting DLL into user-mode processes using APCβ1,226Updated last year
- πΊπ¦ Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etcβ1,905Updated 2 years ago
- π‘οΈ Obfuscator, Encryption, Junkcode, Anti-Debug, PE protection/modificationβ516Updated 7 years ago
- Obfuscate specific windows apis with different apisβ1,000Updated 4 years ago
- Windows x64 Driver Signature Enforcement Overriderβ754Updated 6 years ago
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+β741Updated 7 years ago
- β814Updated 5 years ago
- Hide Process From Task Manager using Usermode API Hookingβ344Updated 3 years ago
- InfectPE - Inject custom code into PE file [This project is not maintained anymore]β324Updated 8 years ago
- Helper library for x86 programs that runs under WOW64 layer on x64 versions of Microsoft Windows operating systems.β971Updated 2 years ago
- Code that allows running another windows PE in the same address space as the host process.β446Updated 8 years ago
- Turn off PatchGuard in real time for win7 (7600) ~ laterβ1,012Updated 3 years ago
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.β876Updated 5 years ago
- WinDBG Anti-RootKit Extensionβ630Updated 4 years ago
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tplβ1,222Updated last week
- Converts a DLL into EXEβ813Updated last year
- Run a Exe File (PE Module) in memory (like an Application Loader)β898Updated 4 years ago
- Demos of various injection techniques found in malwareβ791Updated 3 years ago
- Using Driver Global Injection dll, it can hide DLL modulesβ524Updated 5 years ago
- A collection of c++ programs that demonstrate common ways to detect the presence of an attached debugger.β574Updated 3 years ago
- Hook system calls on Windows by using Kaspersky's hypervisorβ1,197Updated last year
- Literally, the perfect injector.β934Updated 2 years ago
- Windows 8.1 and 10 UAC bypass abusing WinSxS in "dccw.exe".β391Updated 5 years ago
- Monitoring and controlling kernel API calls with stealth hook using EPTβ1,253Updated 3 years ago
- My implementation of enSilo's Process Doppelganging (PE injection technique)β610Updated 2 years ago