christianshub / process-injection-guard
Signature scanner and API hooks to detect malicious process injection
☆18Updated last year
Related projects ⓘ
Alternatives and complementary repositories for process-injection-guard
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated last year
- A class to gather information about a process, its threads and modules.☆24Updated 4 years ago
- A poc that abuses Enclave☆36Updated 2 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆41Updated last year
- Debug Print viewer (user and kernel)☆63Updated 9 months ago
- Based on minhook☆27Updated last year
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆27Updated 2 years ago
- Injector with kernel power☆16Updated 3 years ago
- ☆26Updated last year
- A project on the Unicorn emulator to emulate the code of Pe files in windows☆19Updated 2 months ago
- ☆23Updated 5 years ago
- Driver Loader/BE Bypass/Win Malware(lol)☆34Updated 5 years ago
- X86/X64 Hardware Breakpoint Manager☆39Updated 3 years ago
- Black Signature Driver☆22Updated last year
- Binary DisASseMbler☆23Updated 2 years ago
- ☆47Updated 6 years ago
- Windows driver template, using C++20 & cmake & GithubActions☆19Updated 3 months ago
- A Windows API hooking library !☆29Updated 2 years ago
- ☆24Updated last year
- detect hypervisor with Nmi Callback☆34Updated 2 years ago
- Windows Console Monitor☆32Updated 5 years ago
- Protected Process Light Library☆18Updated 4 years ago
- hook KeyboardClassServiceCallback to prevent messing up sistema☆20Updated last year
- windows kernelmode driver to inject dll into each and every process and perform systemwide function hooking☆52Updated 2 years ago
- Static Library For Windows Drivers☆30Updated this week
- Allows you to find the use of ScyllaHide, if your program will debug and restore hooking functions bytes.☆24Updated 5 years ago