SkarSys / windows-kernel-trojanLinks
A windows kernel mode driver that spoofs serial numbers when mapped and executes a malicious payload (FULLY from kernel!!!)
☆33Updated 10 months ago
Alternatives and similar repositories for windows-kernel-trojan
Users that are interested in windows-kernel-trojan are comparing it to the libraries listed below
Sorting:
- Experiment with PAGE_GUARD protection to hide memory from other processes☆48Updated last year
- Kernel Level NMI Callback Blocker☆117Updated last year
- PoC kernel to usermode injection☆86Updated last year
- ntoskrnl .data hooks for UM-KM communication☆51Updated last year
- My EAC & BE Rady CR3 Reading & Writing source that I use for my KM Drivers.☆71Updated last year
- ☆46Updated 6 months ago
- Fully working kernel-mode VAC bypass☆84Updated 6 months ago
- Just tried, unusable☆41Updated 10 months ago
- Kernel and Usermode Spoofer for SCP:SL☆49Updated last year
- ☆60Updated last year
- Read and Write process memory with this ioctl driver base. This is great for free cheats and learning kernel.☆116Updated last year
- ☆79Updated last year
- A Kernel Driver that can be used for a cheat or malware base to circumvent common cache & structure table checks. PsLoadedModuleList howe…☆145Updated 11 months ago
- This is an EfiGuard BootLoader that can boot EfiGuard from Usermode with no USB or Setup as a Single Executable with automatic File Dumpi…☆59Updated 11 months ago
- Kernel<->Usermode shared memory communcation using manually mapped driver☆23Updated 3 years ago
- cr3 shuffle driver☆49Updated last year
- Me fockin' pe protector☆45Updated 2 years ago
- The sequel to Voyager☆70Updated last year
- manual map unsigned driver over signed memory☆200Updated last year
- Crashes ida on static analyses.☆105Updated 4 months ago
- a always updated and undetected temp spoof driver☆28Updated 5 months ago
- Allows for same-file KernelMode function execution using Encrypted addresses of Functions☆43Updated 10 months ago
- A unique introduction to native runtime obfuscation.☆23Updated 5 months ago
- DSE & PG bypass via BYOVD attack☆59Updated last month
- codecave hook reverse engineering toolkit.☆37Updated last year
- SMM driver/rootkit for platform memory access with R3 <-> R0 <-> R-2 communication.☆93Updated 10 months ago
- A kernel injector for EAC and BE☆127Updated last year
- C/C++ antidebugging library for Windows☆32Updated this week
- Spoof the return address of any function call.☆11Updated last year
- Undetected DLL Injection Method☆36Updated 2 years ago