SoftwareGuy / stealthChamp-qemuLinks
A modified version of QEMU with maximum stealth for those annoying VM-detecting rootkits
☆23Updated 4 years ago
Alternatives and similar repositories for stealthChamp-qemu
Users that are interested in stealthChamp-qemu are comparing it to the libraries listed below
Sorting:
- A static library, wrapper for mhyprot vulnerable driver, execute exploits and tests☆132Updated 5 years ago
- Try to hide Sndboxie☆100Updated 5 months ago
- QEMU patched to avoid detection from various anticheats such as Battleye/EAC☆85Updated last year
- x86 toy kernel implementation written in Easy Programming Language(易語言), still work in progress.☆25Updated last year
- ✨ Modern C++ 20 signature match / search library☆133Updated last year
- SU for Windows☆26Updated 3 years ago
- An improved Detours.☆100Updated this week
- WIP PoC for license emulation in Oreans products☆43Updated 3 weeks ago
- Linux kernel module for memflow's KVM connector☆48Updated last year
- wfp2socks☆10Updated 3 months ago
- Simple EFI runtime driver that hooks GetVariable function and returns data expected by Windows to make it think that it's running with se…☆215Updated 4 years ago
- Fully disables & removes Windows Defender☆36Updated 3 years ago
- C++ Program used to dump Themida and VMProtect.☆32Updated 2 years ago
- Modifies the Blue Screen of Death for 1909/20h1/20h2/21h1.☆167Updated 3 years ago
- A PoC for Mhyprot2.sys vulnerable driver that allowing read/write memory in kernel/user via unprivileged user process.☆337Updated 4 years ago
- Disables virtualprotect checks/hooks so you can modify memory and change memory protection in binaries protected by VMProtect.☆133Updated 4 years ago
- Research on obfuscated licensing APIs / CLIP service in the Windows kernel☆127Updated 3 years ago
- Program behavior analyzer for Win32/Win64.☆46Updated 5 years ago
- Signature scanner and maker plugin for Binary Ninja☆31Updated last year
- Configuration template for simplifying the definition of Visual Studio (MSBuild) C++ projects.☆28Updated 4 months ago
- SSDE is a collection of utilities that help in having Windows load your custom signed kernel drivers when Secure Boot is on and you own t…☆250Updated 4 years ago
- THIS PROJECT IS DISCONTINUED! WMISpoofer allows you to spoof information which other applications read from the Windows Management Instru…☆63Updated 8 years ago
- Decrypting and intercepting encrypted imports of Vanguards Kernel Driver☆37Updated last year
- Example of using Windows Platform Binary Table (WPBT)☆26Updated 2 years ago
- Physical memory and MMIO read/write command line utility via asmmap64 on Windows☆17Updated 2 years ago
- Modify your BSOD!☆38Updated 3 years ago
- Use ntdll/ntoskrnl to implement Kernel32, Advapi32 and other APIs. It includes user-mode and kernel-mode.☆95Updated 4 months ago
- Codes that could trigger BSOD (Blue Screen of Death) on Windows.☆23Updated 11 months ago
- A PoC for vulnerable driver "mhyprot" that allows us to read/write memory in kernel/user from usermode.☆161Updated 5 years ago
- Application that demonstrates how to manually cause bluescreen using undocumented Windows Native API☆39Updated 9 years ago