An Attempt to Bypass Memory Scanners By Misusing the ntdll.dll "RT" Section.
☆100Jan 3, 2016Updated 10 years ago
Alternatives and similar repositories for rtsectiontest
Users that are interested in rtsectiontest are comparing it to the libraries listed below
Sorting:
- ☆36Oct 29, 2020Updated 5 years ago
- Intel-Process communitation☆10Feb 27, 2017Updated 9 years ago
- Test code only. Not suitable for actual use.☆96Apr 19, 2015Updated 10 years ago
- ☆12Feb 19, 2017Updated 9 years ago
- Confirms the capability of Hardware-Accelerated Virtualization Technology.☆10Feb 26, 2026Updated 3 weeks ago
- profiling tool for analysising the games, get all the characteristic by hook d3d☆18Oct 10, 2014Updated 11 years ago
- more at http://www.zer0mem.sk/?p=271☆12Jun 11, 2013Updated 12 years ago
- copy of tdifw lib☆10Jun 15, 2017Updated 8 years ago
- ☆18Oct 12, 2014Updated 11 years ago
- Test code only. Not reliable for actual use.☆63Jan 1, 2016Updated 10 years ago
- modify from memorymodule. support exception☆223Oct 22, 2020Updated 5 years ago
- Microsoft Edge Microsoft Edge主页算法☆20Apr 15, 2019Updated 6 years ago
- Windows Minifilter driver that redirects any I/O Request of mp3 files to a target file☆18Jul 7, 2015Updated 10 years ago
- RVDbg is a debugger/exception handler for Windows processes and has the capability to circumvent anti-debugging techniques. (Cleaner, doc…☆72Sep 5, 2020Updated 5 years ago
- ☆15Jul 22, 2024Updated last year
- Detecting execution of kernel memory where is not backed by any image file☆261Jul 11, 2018Updated 7 years ago
- A c++, QT gui based memory engine☆13Mar 6, 2018Updated 8 years ago
- kHypervisor is a lightweight bluepill-like nested VMM for Windows, it provides and emulating a basic function of Intel VT-x☆446Nov 29, 2021Updated 4 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆27May 21, 2014Updated 11 years ago
- Library for kernel and user mode splicing for Windows (x86 and x64).☆64Oct 29, 2012Updated 13 years ago
- windows kernel File redirection☆20Sep 21, 2014Updated 11 years ago
- windows driver develop kit with c++ mail:maguojun123@126.com☆48Jul 15, 2019Updated 6 years ago
- Remote execution tool☆14Jan 14, 2014Updated 12 years ago
- ...☆10Feb 16, 2015Updated 11 years ago
- Analysing and defeating PatchGuard universally☆36Nov 4, 2020Updated 5 years ago
- ☆125May 23, 2020Updated 5 years ago
- Map memory to user space and manipulate user memory, using capmon☆24Nov 3, 2018Updated 7 years ago
- ☆116Oct 1, 2019Updated 6 years ago
- usermode standalone kernel interface☆111Jul 9, 2018Updated 7 years ago
- pseudo-code to show how to disable patchguard with win10☆295Jan 13, 2018Updated 8 years ago
- wow64 syscall filter☆13Nov 12, 2014Updated 11 years ago
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 8 years ago
- use crystalCPUID to identify vt-x & amd-v☆17Apr 8, 2015Updated 10 years ago
- VT-based PCI device monitor (SPI)☆158Oct 29, 2020Updated 5 years ago
- AllMemPro☆46Jan 15, 2018Updated 8 years ago
- This tiny project prevents the signtool from verifing cert time validity and let you sign your bin with outdated cert without changing sy…☆238Dec 14, 2018Updated 7 years ago
- A hypervisor hiding user-mode memory using EPT☆107Jan 28, 2018Updated 8 years ago
- Kernel mode driver loader, injecting into the windows kernel, Rootkit. Driver injections.☆47Nov 9, 2014Updated 11 years ago
- Tools made for my Hyper-V blog series @ https://foxhex0ne.blogspot.com/☆58Jun 21, 2020Updated 5 years ago