Rhydon1337 / windows-kernel-file-delete
Force a file delete using a windows kernel driver
☆64Updated 2 years ago
Alternatives and similar repositories for windows-kernel-file-delete:
Users that are interested in windows-kernel-file-delete are comparing it to the libraries listed below
- Protect a process from code injection, termination and hooking☆47Updated 3 years ago
- Protect a file from being deleted using windows kernel file system minifilter driver☆37Updated 4 years ago
- windows kernel pagehook☆39Updated 2 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆105Updated 2 years ago
- ☆68Updated 2 years ago
- Windows kernel drivers simple HTTP library for modern C++☆42Updated 6 years ago
- Force kill a process using windows kernel driver☆24Updated 4 years ago
- ☆132Updated 2 years ago
- Hiding a system thread against conventional means of detection☆40Updated 4 years ago
- A poc that abuses Enclave☆38Updated 2 years ago
- POC Hook of nt!HvcallCodeVa☆51Updated last year
- Only for Stress-Testing☆24Updated 3 years ago
- x64 Windows implementation of virtual-address to physical-address translation☆40Updated 3 years ago
- DSE & PG bypass via BYOVD attack☆50Updated last year
- Windows PDB parser for kernel-mode environment.☆95Updated 2 years ago
- A library to assist with memory & code protection.☆56Updated last year
- ☆31Updated 4 years ago
- windows kernelmode driver to inject dll into each and every process and perform systemwide function hooking☆52Updated 2 years ago
- D☆43Updated 3 years ago
- detect hypervisor with Nmi Callback☆34Updated 2 years ago
- silence file system monitoring components by hooking their minifilters☆56Updated last year
- ☆10Updated 2 years ago
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆48Updated 2 years ago
- bootkit驱动映射,三环进程注入加载指定模块☆12Updated 6 months ago
- ☆52Updated 2 years ago
- A method to Disable DSE using .data ptr hooks☆29Updated last year
- ☆68Updated 3 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆85Updated last year
- ☆65Updated 6 years ago
- Use ntdll/ntoskrnl to implement Kernel32, Advapi32 and other APIs. It includes user-mode and kernel-mode.☆77Updated last month