VollRagm / KernelBypassSharp
C# Kernel Mode Driver to read and write memory in protected processes
☆364Updated last year
Alternatives and similar repositories for KernelBypassSharp:
Users that are interested in KernelBypassSharp are comparing it to the libraries listed below
- C# Kernel Mode Driver example using NativeAOT☆187Updated 3 years ago
- A C# DLL injection library☆212Updated 3 years ago
- C# Anti-Debug and Anti-Dumping techniques using Win32 API functions and tricks.☆286Updated 3 years ago
- A C# port of the MinHook API hooking library☆210Updated 3 years ago
- A lightweight native DLL mapping library that supports mapping directly from memory☆584Updated last year
- Virtualization made for .NET using ConfuserEX☆269Updated 6 years ago
- ConfuserEx unpacking tools☆181Updated 2 years ago
- An automated KoiVM disassembler and devirtualisation utility☆362Updated last year
- C# DLL Injection Library capable of injecting x86 DLLs to x86 process from x64 processes.☆163Updated last year
- Dumping processes using the power of kernel space !☆1,007Updated last year
- DLL that hooks the NtQuerySystemInformation API and hides a process name☆287Updated last year
- A revival of the classic and legendary KsDumper☆461Updated 2 months ago
- DLL scatter manual mapper☆737Updated 3 years ago
- A manual system call library that supports functions from both ntdll.dll and win32u.dll☆109Updated last year
- Kernel mode driver for reading/writing process memory. C/Win32.☆288Updated 6 years ago
- Generic static analysis framework.☆218Updated last week
- An Injector that can inject dll into game process protected by anti cheat using SetWindowsHookEx.☆242Updated 5 years ago
- Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module☆413Updated 6 years ago
- A DLL injector to inject .NET assemblies into a foreign .NET process.☆127Updated 4 months ago
- A customizable process dumper.☆138Updated 5 years ago
- A dnSpy extension to aid reversing of obfuscated assemblies☆358Updated last year
- Manual mapping without creating any threads, with rw only access☆736Updated 5 years ago
- Devirtualizer for Eazfuscator.NET☆176Updated 7 years ago
- driver manual mapper (outdated/for educational purposes)☆101Updated 5 years ago
- ☆199Updated last month
- ☆108Updated 5 years ago
- A deobfuscation tool for Eazfuscator.☆385Updated last year
- This program help you with unpacking vmprotect☆198Updated 3 years ago
- Loads a signed kernel driver which allows you to map any driver to kernel mode without any traces of the signed / mapped driver.☆317Updated 3 years ago
- usermode driver mapper that forcefully loads any signed kernel driver (legit cert) with a big enough section (example: .data, .rdata) to …☆412Updated 3 years ago