can1357 / linux-pe
COFF and Portable Executable format described using standard C++ with no dependencies.
☆279Updated 2 weeks ago
Alternatives and similar repositories for linux-pe:
Users that are interested in linux-pe are comparing it to the libraries listed below
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆593Updated 3 months ago
- The Universal C++ RunTime library, supporting kernel-mode C++ exception-handler and STL.☆400Updated 9 months ago
- C++17 PE manualmapper☆353Updated 3 years ago
- A modern c++ implementation of windows heavens gate☆220Updated 4 years ago
- System call hook for Windows 10 20H1☆486Updated 3 years ago
- C++ graphics kernel subsystem hook☆513Updated 4 years ago
- C++ STL in the Windows Kernel with C++ Exception Support☆408Updated last year
- This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemo…☆597Updated 6 years ago
- Inline syscalls made easy for windows on clang☆703Updated 10 months ago
- Windows inline hooking tool.☆265Updated 6 years ago
- A wrapper library around native windows sytem APIs☆433Updated 4 years ago
- set of single-header libraries for C/C++. The code is far from finished but some parts are quite usable.☆171Updated 3 years ago
- Collection of undocumented Windows API declarations.☆313Updated last month
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆289Updated 5 years ago
- A bunch of parsers for PE and PDB formats in C++☆243Updated 11 months ago
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆536Updated 4 months ago
- IDA Pro plugin to make bitfield accesses easier to grep☆236Updated 2 months ago
- DLL scatter manual mapper☆742Updated 4 years ago
- Debugger Anti-Detection Benchmark☆332Updated last year
- Single-header, minimalistic, cross-platform hook library written in pure C☆325Updated 7 months ago
- Rendering on external windows via hijacking thread contexts☆390Updated 4 years ago
- A VMP to VTIL lifter.☆435Updated 3 years ago
- The functions interception library written on pure C and NativeAPI with UserMode and KernelMode support☆743Updated last week
- Native code virtualizer for x64 binaries☆483Updated 4 months ago
- Hooking kernel functions by abusing alignment☆238Updated 4 years ago
- Emulate Drivers in RING3 with self context mapping or unicorn☆338Updated 2 years ago
- x86-64 Assembler based on Zydis☆357Updated 2 months ago
- X86 Mutation Engine with Portable Executable compatibility.☆485Updated 2 years ago
- AntiDebugging sample sources written in C++☆340Updated 6 years ago
- SimpleSvmHook is a research purpose hypervisor for Windows on AMD processors.☆384Updated 4 years ago