can1357 / physical_mem_controller
A library to read physical memory and system-wide virtual memory.
☆125Updated 6 years ago
Alternatives and similar repositories for physical_mem_controller:
Users that are interested in physical_mem_controller are comparing it to the libraries listed below
- Intercepting DeviceControl via WPP☆133Updated 5 years ago
- ☆152Updated 5 years ago
- ☆141Updated 4 years ago
- An x64 page table iterator written in C++ as a kernel mode windows driver.☆108Updated 3 years ago
- Detect-KeAttachProcess by iterating through all processes as well as checking the context of the thread.☆111Updated 3 years ago
- Disks for DMA☆104Updated 3 years ago
- x64 syscall caller in C++.☆89Updated 6 years ago
- Kernel Lazy Importer☆112Updated last year
- Enable SEH support for manual mapped x86-32bit PEs☆66Updated 6 years ago
- Proof of concept on how to bypass some limitations of a manual mapped driver☆168Updated 4 years ago
- Browse Page Tables on Windows (Page Table Viewer)☆197Updated 3 years ago
- Hooking SSDT with Avast Internet Security Hypervisor☆117Updated 6 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆286Updated 4 years ago
- Easy Anti PatchGuard☆215Updated 4 years ago
- Some psuedo snippets from BattlEye's BEDaisy.sys loaded on Rainbow Six: Siege.☆123Updated 3 years ago
- Shows an example of how to implement VT-d/AMD-Vi on Windows☆106Updated last year
- ☆64Updated 12 years ago
- Collect different versions of Crucial modules.☆132Updated 9 months ago
- Handling C++ & __try exceptions without the need of built-in handlers.☆70Updated 3 years ago
- Kernel driver for detecting Intel VT-x hypervisors.☆182Updated last year
- Capcom wrapper with safety in mind.☆79Updated 6 years ago
- manually map driver for a signed driver memory space☆153Updated 4 years ago
- ☆96Updated 7 years ago
- Kernel driver that uses Shared memory to communicate with UserMode☆85Updated 5 years ago
- ayy debuger☆89Updated last year
- 🪝 Different aproaches to detecting EPT hooks☆107Updated 2 years ago
- Disable Driver Callbacks☆102Updated 7 years ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆69Updated last year
- ☆199Updated 2 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆86Updated last year