☆17Apr 9, 2022Updated 3 years ago
Alternatives and similar repositories for Windows-kernel-learning-notes
Users that are interested in Windows-kernel-learning-notes are comparing it to the libraries listed below
Sorting:
- it's a driver injector or driver loader header lib(Windows)☆12Aug 5, 2023Updated 2 years ago
- DllInject (Memory Load)☆11Jan 5, 2019Updated 7 years ago
- 内存加载DLL 支持VMP最大加密☆12Aug 11, 2020Updated 5 years ago
- 废物自救项目!一起向光而行!!!☆11May 7, 2022Updated 3 years ago
- 滴水逆向笔记☆32Mar 10, 2022Updated 3 years ago
- simple undetect esp☆12Mar 19, 2024Updated last year
- ☆17Dec 18, 2022Updated 3 years ago
- IAT-Obfuscation to make static analysis of executable harder.☆44Sep 6, 2021Updated 4 years ago
- A runtime for developing large-scale and complex shellcode.☆22Feb 15, 2026Updated last week
- x64HOOK库☆18Jan 14, 2020Updated 6 years ago
- ☆15Dec 16, 2020Updated 5 years ago
- a deflat script using unicorn engine☆43Oct 23, 2022Updated 3 years ago
- 针对windows rootkit的一些检测,分别从进程、端口、文件这三个方面进行检测。☆21Jan 16, 2025Updated last year
- Stealing signatures from pe files☆15Apr 1, 2025Updated 10 months ago
- A simple golang reverse engineering ida plugin☆19Dec 16, 2020Updated 5 years ago
- Driver protect 驱动保护☆46Apr 23, 2020Updated 5 years ago
- ☆117Feb 11, 2022Updated 4 years ago
- Yet-Another-Spy☆19Apr 21, 2017Updated 8 years ago
- A simple Windows kernel driver containing MemRead/Write, KillProcess, I/O Call...☆24Aug 27, 2019Updated 6 years ago
- clearing traces of a loaded driver☆47Jul 2, 2022Updated 3 years ago
- 一个可以帮助你进行Windows驱动开发和分析的工具。☆46Jun 13, 2021Updated 4 years ago
- EtwHook for win7-win11;☆23Sep 13, 2022Updated 3 years ago
- ☆24Oct 25, 2022Updated 3 years ago
- 我的开源:讲解anything☆20Nov 7, 2020Updated 5 years ago
- VT Hook☆51Jul 2, 2024Updated last year
- 保护进程☆24Apr 4, 2023Updated 2 years ago
- 学习windows驱动相关☆23Jul 31, 2019Updated 6 years ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆23Nov 22, 2021Updated 4 years ago
- A Cheat Engine server for DMA based memory access using PCILeech☆24May 17, 2024Updated last year
- 远程注入无导入函数dll,自 动重定位以后内存加载dll☆49Apr 27, 2019Updated 6 years ago
- BypaPH - Process Hacker's bypass (read/write any process virtual memory & kernel mem) 带签名驱动,驱动级内存读取☆23Sep 3, 2020Updated 5 years ago
- IDA Python Script for anti ollvm☆107Aug 25, 2021Updated 4 years ago
- 《Windows内核编程》学习☆62Feb 23, 2021Updated 5 years ago
- ☆174Mar 9, 2022Updated 3 years ago
- A library with four different methods to execute shellcode in a process☆26Mar 24, 2020Updated 5 years ago
- CF手游飞天、高跳功能,Python实现,特征码定位地址,雷电模拟器版本☆26Mar 29, 2020Updated 5 years ago
- 驱动加载器 -> 利用iqvw64e.sys映射驱动☆56Jul 23, 2020Updated 5 years ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆109Sep 1, 2022Updated 3 years ago
- Monitor ETW events for Windows process mitigation policies, with stack traces☆31Oct 7, 2022Updated 3 years ago