VollRagm / KernelBypassSharp
C# Kernel Mode Driver to read and write memory in protected processes
☆363Updated last year
Alternatives and similar repositories for KernelBypassSharp:
Users that are interested in KernelBypassSharp are comparing it to the libraries listed below
- C# Kernel Mode Driver example using NativeAOT☆187Updated 3 years ago
- C# Anti-Debug and Anti-Dumping techniques using Win32 API functions and tricks.☆284Updated 3 years ago
- A C# DLL injection library☆212Updated 3 years ago
- Virtualization made for .NET using ConfuserEX☆268Updated 6 years ago
- A lightweight native DLL mapping library that supports mapping directly from memory☆587Updated last year
- DLL that hooks the NtQuerySystemInformation API and hides a process name☆285Updated last year
- A C# port of the MinHook API hooking library☆209Updated 2 years ago
- ConfuserEx unpacking tools☆179Updated 2 years ago
- ☆195Updated this week
- Devirtualizer for Eazfuscator.NET☆176Updated 7 years ago
- .NET Project containing plenty of advanced techniques to detect various types of malicious actions on your software, with syscall support…☆276Updated last month
- A dnSpy extension to aid reversing of obfuscated assemblies☆356Updated last year
- An automated KoiVM disassembler and devirtualisation utility☆361Updated last year
- A deobfuscation tool for Eazfuscator.☆384Updated last year
- Dumping processes using the power of kernel space !☆999Updated last year
- C# DLL Injection Library capable of injecting x86 DLLs to x86 process from x64 processes.☆162Updated last year
- A revival of the classic and legendary KsDumper☆446Updated last month
- This tool will allow you to spoof the return addresses of your functions as well as system functions.☆439Updated 2 years ago
- Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module☆413Updated 6 years ago
- Kernel mode driver for reading/writing process memory. C/Win32.☆284Updated 6 years ago
- Generic static analysis framework.☆214Updated 2 weeks ago
- An Injector that can inject dll into game process protected by anti cheat using SetWindowsHookEx.☆243Updated 5 years ago
- A customizable process dumper.☆137Updated 5 years ago
- Loads a signed kernel driver which allows you to map any driver to kernel mode without any traces of the signed / mapped driver.☆306Updated 3 years ago
- usermode driver mapper that forcefully loads any signed kernel driver (legit cert) with a big enough section (example: .data, .rdata) to …☆404Updated 3 years ago
- Manual mapping without creating any threads, with rw only access☆725Updated 5 years ago
- System call hook for Windows 10 20H1☆486Updated 3 years ago
- Using Driver Global Injection dll, it can hide DLL modules☆518Updated 5 years ago
- Manual mapper that uses PTE manipulation, Virtual Address Descriptor (VAD) manipulation, and forceful memory allocation to hide executabl…☆309Updated 3 years ago
- Simple Kernelmode DLL Injector with Manual mapping☆260Updated last year