devrimm / block-process-execute
Block process execute kernel driver for Windows x64
☆19Updated 8 years ago
Related projects ⓘ
Alternatives and complementary repositories for block-process-execute
- The project is a demo solution for one of the anti-rootkit techniques aimed on overcoming splicers☆34Updated 7 years ago
- An idea in hooking APIs by replacing calls that lead to them☆1Updated 2 years ago
- Handy WMI query tool.☆12Updated 8 years ago
- Minifilter Driver☆15Updated 7 years ago
- Windows Kernel Mode PCRE☆10Updated 9 years ago
- wow64 syscall filter☆13Updated 10 years ago
- Ssdt Hook Detection tool☆12Updated 8 years ago
- ☆14Updated 7 years ago
- simple plugin for lastest olly versions to display the callstack☆15Updated 11 years ago
- An aggregate of tools used in the core of vmp_dbg plus other parsing utils to parse vmp bc.☆15Updated 8 years ago
- Hook APIs and send data back to another process with Google Protobufs☆2Updated 2 years ago
- This is a demo project to illustrate the way to verify and restore original SST in case of some malware hooks☆33Updated 7 years ago
- ☆9Updated 7 years ago
- A project dedicated towards researching the Windows operating system's kernel mode enviornment.☆8Updated 8 years ago
- XenServer Windows Virtual Network Interface Device Driver☆12Updated 7 years ago
- Automatically exported from code.google.com/p/guardlite☆11Updated 9 years ago
- ☆11Updated 9 years ago
- windows内核小工具,包含APP和driver☆11Updated 9 years ago
- Windows PE file debugger☆11Updated 7 years ago
- ☆16Updated 8 years ago
- Inject codes to another process to watch and operate other process. This is usually used as anti-virus software.☆10Updated 9 years ago
- ☆13Updated 7 years ago
- an efficient yet easy to use network packet builder and parser☆11Updated 7 years ago
- Notes my learning steps about Windows-NT☆22Updated 7 years ago
- Final Transparent encrypted version☆14Updated 7 years ago
- PE32 binary + W32 payload☆12Updated 7 years ago