deroko / xtracerLinks
old code from 2007/2008 which uses split TLB to trace OEP
☆16Updated 7 years ago
Alternatives and similar repositories for xtracer
Users that are interested in xtracer are comparing it to the libraries listed below
Sorting:
- An ark tool's driver☆40Updated 8 years ago
- x64 Kernel Hooks Detection☆24Updated 8 years ago
- Shareds for kernel developement☆28Updated 11 years ago
- ☆26Updated 8 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆29Updated 7 years ago
- ☆27Updated 6 years ago
- a sandbox project by sudami☆17Updated 7 years ago
- network filter driver that control network send speed, based on windows tdi framework.☆31Updated last year
- Kinject - kernel dll injector, currently available in x86 version, will be updated to x64 soon.☆32Updated 10 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆25Updated 11 years ago
- Windows Kernel Driver - Create a driver device in TDI layer of windows kernel to capture network data packets☆37Updated 11 years ago
- ☆14Updated 8 years ago
- just an lite AntiRootkit for interesting☆24Updated 9 years ago
- ☆33Updated 4 years ago
- kernel-mode TDI client which can send and receive HTTP requests☆55Updated 7 years ago
- Map memory to user space and manipulate user memory, using capmon☆24Updated 6 years ago
- ☆24Updated 7 years ago
- Publish☆52Updated 5 years ago
- createfile☆48Updated 9 years ago
- Wow64 syscall hook☆41Updated 8 years ago
- A driverless driver that is supposed to be manually mapped, usually by using TDL exploit. The driver shows how to read/write to any proce…☆21Updated 7 years ago
- windows kernel File redirection☆20Updated 10 years ago
- by others☆38Updated 7 years ago
- Helper utility for debugging windows PE/PE+ loader.☆52Updated 10 years ago
- A command line tool to load and unload a device driver.☆47Updated 8 years ago
- Hook IDT vector 0xb2 to detect SCI in 64bit windows.☆34Updated 2 years ago
- ☆12Updated 8 years ago
- PE(compressed dll) memory loader using nt api☆44Updated 8 years ago
- Open Source Libraries Collection☆24Updated 9 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆23Updated 8 years ago