VollRagm / KernelBypassSharp
C# Kernel Mode Driver to read and write memory in protected processes
☆363Updated last year
Alternatives and similar repositories for KernelBypassSharp:
Users that are interested in KernelBypassSharp are comparing it to the libraries listed below
- C# Kernel Mode Driver example using NativeAOT☆184Updated 3 years ago
- A C# DLL injection library☆212Updated 3 years ago
- C# Anti-Debug and Anti-Dumping techniques using Win32 API functions and tricks.☆284Updated 3 years ago
- A lightweight native DLL mapping library that supports mapping directly from memory☆589Updated last year
- A C# port of the MinHook API hooking library☆204Updated 2 years ago
- Virtualization made for .NET using ConfuserEX☆267Updated 6 years ago
- Dumping processes using the power of kernel space !☆995Updated last year
- C# DLL Injection Library capable of injecting x86 DLLs to x86 process from x64 processes.☆162Updated 11 months ago
- A revival of the classic and legendary KsDumper☆438Updated this week
- DLL that hooks the NtQuerySystemInformation API and hides a process name☆289Updated last year
- A deobfuscation tool for Eazfuscator.☆381Updated last year
- Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module☆414Updated 6 years ago
- An automated KoiVM disassembler and devirtualisation utility☆360Updated last year
- A customizable process dumper.☆139Updated 5 years ago
- Generic static analysis framework.☆211Updated last week
- .net obfuscator using dnlib☆409Updated 5 months ago
- ConfuserEx unpacking tools☆180Updated last year
- DLL scatter manual mapper☆730Updated 3 years ago
- Devirtualizer for Eazfuscator.NET☆176Updated 7 years ago
- Anti-debugging techniques on a (bad looking) Win32 application.☆235Updated 10 months ago
- A tool for automatically reconstructing IL code from an assembly virtualized with Eazfuscator.NET☆151Updated 2 months ago
- Kernel mode driver for reading/writing process memory. C/Win32.☆282Updated 6 years ago
- .NET Project containing plenty of advanced techniques to detect various types of malicious actions on your software, with syscall support…☆268Updated this week
- This project describes a technique how a NATIVE dynamic link library (DLL) can be loaded from memory (In C#) without storing it on the ha…☆72Updated 5 years ago
- Implements performant ReadProcessMemory and WriteProcessMemory with generic type parameters using InlineIL☆74Updated 3 years ago
- .NET Assembly Dumper☆865Updated last year
- usermode driver mapper that forcefully loads any signed kernel driver (legit cert) with a big enough section (example: .data, .rdata) to …☆397Updated 3 years ago
- Manual mapping without creating any threads, with rw only access☆717Updated 5 years ago
- driver manual mapper (outdated/for educational purposes)☆99Updated 5 years ago
- This program help you with unpacking vmprotect☆196Updated 3 years ago