backengineering / msrexec
Elevate arbitrary MSR writes to kernel execution.
☆17Updated last year
Related projects ⓘ
Alternatives and complementary repositories for msrexec
- A demonstration of hooking into the VMProtect-2 virtual machine☆17Updated last year
- A way to detect DBI frameworks, Debuggers and VMs.☆22Updated 4 years ago
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- .lib file for linking against the NT CRT☆20Updated 2 years ago
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated last year
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆27Updated 2 years ago
- EDR PoC WIP LLC☆10Updated 9 months ago
- ☆23Updated 8 months ago
- A Windows API hooking library !☆29Updated 2 years ago
- How Meltdown and Spectre haunt Anti-Cheat: DVRT details☆20Updated 3 months ago
- Hijack NotifyRoutine for a kernelmode thread☆41Updated 2 years ago
- Windows driver template, using C++20 & cmake & GithubActions☆19Updated 3 months ago
- Native API header files for the Process Hacker project (nightly).☆24Updated last week
- ☆26Updated last year
- Small project to generate fake DLLs based on an executable's import table☆23Updated 4 years ago
- ☆47Updated 6 years ago
- Abusing RtlAdjustPrivilege and NtSetInformationProcess to cause a BSOD from usermode☆15Updated 2 years ago
- Single header library to simplify the usage of direct syscalls. x64/x86☆12Updated last year
- Function hooks in Windows NT Kernel☆21Updated 4 years ago
- vmware-backdoor☆33Updated 3 years ago
- Bypassing kernel patch protection runtime☆19Updated last year
- ☆29Updated 2 years ago
- ☆30Updated 2 years ago
- An example of how to use Microsoft Windows Warbird technology☆25Updated last year
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆18Updated last month
- kernel driver used to monitor the activity of BadlionAnticheat.sys by patching its IAT☆32Updated 3 years ago
- combine the power of procmon and dbgview into one single application☆7Updated 9 months ago
- ☆36Updated last year