codecrack3 / Run-PE---Run-Portable-Executable-From-MemoryLinks
Code that allows running another windows PE in the same address space as the host process.
☆65Updated 8 years ago
Alternatives and similar repositories for Run-PE---Run-Portable-Executable-From-Memory
Users that are interested in Run-PE---Run-Portable-Executable-From-Memory are comparing it to the libraries listed below
Sorting:
- Demo service that runs in svchost.exe☆79Updated 7 years ago
- Reflective PE loader for DLL injection☆180Updated 7 years ago
- Collection of DLL function export forwards for DLL export function proxying☆102Updated last year
- Assembly block for hooking windows API functions.☆92Updated 6 years ago
- Packer (actually a crypter) for antivirus evasion implemented for windows PE files (BSc-Thesis)☆104Updated 5 years ago
- An Open Source Windows DLL Injector With All Known Techniques Available☆86Updated 7 years ago
- A PoC designed to bypass all usermode hooks in a WoW64 environment.☆150Updated 4 years ago
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆88Updated 9 years ago
- A modified RunPE (process hollowing) technique avoiding the usage of SetThreadContext by appending a TLS section which calls the original…☆97Updated 5 years ago
- A Windows PE format file loader☆145Updated 7 years ago
- Inject code into a legitimate process☆144Updated 10 years ago
- PoC designed to evade userland-hooking anti-virus.☆89Updated 6 years ago
- Lightweight Portable Executable parsing library and a demo peParser application.☆80Updated 2 years ago
- A simple tool for detecting memory modifications to Windows API.☆22Updated 6 months ago
- Process Hollowing for 32 bit and 64 bit☆79Updated 7 years ago
- NINA: No Injection, No Allocation x64 Process Injection Technique☆226Updated 5 years ago
- Example application for creating multiple desktops on Windows☆138Updated 7 years ago
- Windows C/C++ Socks5 Server☆86Updated 2 years ago
- Run any executable as SYSTEM account (no service required)☆133Updated last year
- Use NT Native Registry API to create a registry that normal user can not query.☆92Updated 7 years ago
- Slui File Handler Hijack UAC Bypass Local Privilege Escalation☆93Updated last month
- Used to create wrappers and proxy libraries for Windows binaries.☆76Updated 13 years ago
- A PE (Portable Executable) packer with Huffman Compression and Xor encryption.☆66Updated 3 years ago
- Shellcode to load an appended Dll☆90Updated 4 years ago
- Code that allows running another windows PE in the same address space as the host process.☆449Updated 8 years ago
- execute a PE in the address space of another PE aka process hollowing☆58Updated 3 years ago
- ☆63Updated 2 years ago
- A cross-platform Python toolkit for parsing/writing PE files.☆67Updated last year
- Assembly block for finding and calling the windows API functions inside import address table(IAT) of the running PE file.☆76Updated 2 years ago
- Runs programs as TrustedInstaller☆49Updated 6 years ago