danielkrupinski / KernelProcessList
Example Windows Kernel-mode Driver which enumerates running processes.
☆51Updated 2 years ago
Related projects: ⓘ
- Handling C++ & __try exceptions without the need of built-in handlers.☆63Updated 3 years ago
- reverse engineering of bedaisy.sys (battleyes kernel driver) - Aki2k/BEDaisy☆53Updated 4 years ago
- ☆45Updated 3 years ago
- Kernel driver that uses Shared memory to communicate with UserMode☆81Updated 5 years ago
- ☆50Updated this week
- ☆53Updated this week
- x64 syscall caller in C++.☆84Updated 6 years ago
- Detect removed thread from PspCidTable.☆67Updated 2 years ago
- BetaShield Windows x86 Ring3 Anticheat v2☆34Updated 7 years ago
- A proof of concept demonstrating communication via mapped shared memory structures between a user-mode process and a kernel-mode payload …☆73Updated 3 years ago
- Windows PDB parser for kernel-mode environment.☆82Updated last year
- Custom KiSystemStartup, can be used to modificate kernel before boot.☆47Updated 2 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆75Updated last year
- based on https://github.com/secrary/Hooking-via-InstrumentationCallback☆67Updated 4 years ago
- ☆46Updated last year
- PAGE_GUARD based hooking library☆38Updated 2 years ago
- Intercepting DeviceControl via WPP☆125Updated 4 years ago
- ☆76Updated 3 years ago
- Mapping your code on a 0x1000 size page☆66Updated 2 years ago
- ☆82Updated this week
- scans through physical memory and paging tables in kernel mode☆104Updated 3 years ago
- Discarded Section Manual Map☆65Updated 4 years ago
- Visual Studio Project example for using Microsoft's STL in WDM (Windows Kernel-mode Driver)☆23Updated 3 years ago
- Communication via callback☆69Updated 4 years ago
- An x64 page table iterator written in C++ as a kernel mode windows driver.☆98Updated 3 years ago
- Using DKOM to hide kernel mode drivers☆51Updated 6 years ago
- Anti-debug library based on al-khaser with ScyllaHide/TitanHide detection.☆57Updated 5 years ago
- Hiding a system thread against conventional means of detection☆34Updated 3 years ago
- ☆62Updated this week
- This project will give you an example how you can hook a kernel vtable function that cannot be directly called☆78Updated 2 years ago