PoC for Bypassing UM Hooks By Bruteforcing Intel Syscalls
☆39Nov 20, 2015Updated 10 years ago
Alternatives and similar repositories for syscalltest
Users that are interested in syscalltest are comparing it to the libraries listed below
Sorting:
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 8 years ago
- Code Injector Using Code Caves☆15Jul 12, 2015Updated 10 years ago
- A system call tracer☆10Sep 22, 2014Updated 11 years ago
- An application for obtaining, dumping and modifying token from user land.☆26Nov 21, 2015Updated 10 years ago
- ☆11Aug 28, 2024Updated last year
- Maltrace is a simple syscall tracer for Windows implemented through the use of PIN.☆24Apr 10, 2013Updated 12 years ago
- Anti-AV compilation☆44Oct 4, 2013Updated 12 years ago
- Simple header only library to change return address on current stack frame.☆22Sep 4, 2016Updated 9 years ago
- Enumerate the DLLs/Modules using NtQueryVirtualMemory☆32Jun 11, 2015Updated 10 years ago
- This is a pintool that can analyze target dynamically and output code blocks and "key frames".☆14Mar 26, 2015Updated 10 years ago
- Library for using direct system calls☆35Jan 30, 2025Updated last year
- ☆14Apr 7, 2018Updated 7 years ago
- ☆22Mar 23, 2016Updated 9 years ago
- Lists work items being queued currently.☆14Jun 7, 2015Updated 10 years ago
- ☆17Oct 24, 2016Updated 9 years ago
- Native Development Kit for Vista 64bit And Later, by me, Based on NDK Headers 1.0, by Alex Ionescu☆17Dec 6, 2015Updated 10 years ago
- ☆17Feb 29, 2020Updated 6 years ago
- ☆37May 9, 2019Updated 6 years ago
- ☆11Mar 11, 2015Updated 11 years ago
- UI application that can compare PE images in memory or in raw PE file☆19Feb 17, 2014Updated 12 years ago
- ☆12Dec 15, 2016Updated 9 years ago
- A pure-python win32 debugger interface.☆28Jan 10, 2016Updated 10 years ago
- User-mode process cross-checking utility intended to detect naive malware hiding itself by hooking IAT/EAT.☆19Mar 3, 2016Updated 10 years ago
- Visual Studio (C++) Solution Template for Payloads☆18Oct 30, 2019Updated 6 years ago
- kernel pool windbg extension☆83Jul 23, 2015Updated 10 years ago
- ☆52Sep 15, 2016Updated 9 years ago
- Process reimaging proof of concept code☆97Jun 21, 2019Updated 6 years ago
- A tiny PoC to inject and execute code into explorer.exe with WM_SETTEXT+WM_COPYDATA+SetThreadContext☆53Apr 29, 2018Updated 7 years ago
- Simple proof of concept code for injecting libraries on 64bit processes from a 32bit process☆96Oct 12, 2018Updated 7 years ago
- Python wrapper for the Windows CDB Debugger☆20Feb 9, 2022Updated 4 years ago
- Handy WMI query tool.☆12Jun 20, 2016Updated 9 years ago
- Simple program for static hooking dynamic libraries in executable application☆24Jan 15, 2014Updated 12 years ago
- ☆48Jun 19, 2017Updated 8 years ago
- Minimal Intervention and Software Transformation - PoC Packer designed for AV detection bypass☆18Nov 4, 2017Updated 8 years ago
- Reflective Polymorphism☆109Jun 29, 2018Updated 7 years ago
- Loads .NET Assembly Via CLR Loader☆17Mar 6, 2019Updated 7 years ago
- Generate MAEC XML from Ero Carrera's pefile output☆15Mar 6, 2017Updated 9 years ago
- Overwrite C/C++ functions in memory for x86-32/64 on Linux, Mac & Windows☆15Jun 12, 2023Updated 2 years ago
- PetitPotam fork with Kerberos support in the impacket script☆17Aug 3, 2021Updated 4 years ago