dkxce / MSILid4ExeLinks
MSI creator for exe setup/installer
☆11Updated 2 years ago
Alternatives and similar repositories for MSILid4Exe
Users that are interested in MSILid4Exe are comparing it to the libraries listed below
Sorting:
- Harness to issue Virtual Secure Mode (VSM) "secure calls" from VTL 0 to VTL 1☆71Updated 5 months ago
- bootkit驱动映射,三环进程注入加载指定模块☆14Updated last year
- POC for CVE-2023-29360☆12Updated last year
- Minimalistic HTTP(S) client for the NT kernel☆61Updated 2 months ago
- WinHvShellcodeEmulator (WHSE) is a shellcode emulator leveraging the Windows Hypervisor Platform API☆26Updated 3 years ago
- NtCreateUserProcess with CsrClientCallServer for mainstream Windows x64 version☆42Updated last year
- Windows driver template, using C++20 & cmake & GithubActions☆24Updated last year
- Lightweight Threat Detection System - (Base)☆15Updated last year
- A basic implementation of Patch Guard that I implemented, that includes integrity checks and other protection mechanisms I added.☆78Updated 10 months ago
- Using the peculiar behaviour of the VPGATHER instructions to determine if an address will fault before it is truly accessed. All done in …☆52Updated last month
- Load Dll into Kernel space☆39Updated 3 years ago
- shadow tls☆17Updated 3 years ago
- Reversed WintaPix Malware Source code | That targets countries in the Middle East and abuse KeServiceDescriptorTable(SSDT), persistence a…☆22Updated last year
- ☆20Updated 2 years ago
- Hook all callbacks which are registered with LdrRegisterDllNotification☆96Updated 10 months ago
- A C++/Asm template for PIC/EXE/DLL malware☆24Updated 5 months ago
- Windows Research Kernel☆38Updated 4 months ago
- ☆10Updated last year
- Bypassing kernel patch protection runtime☆21Updated 2 years ago
- Proof-of-Concept software for detecting AV/EDR hooks in Windows libraries.☆36Updated 3 years ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆23Updated 4 years ago
- An attempt at reversing WindowsDefender☆20Updated last year
- Proof-of-concept game using VBS enclaves to protect itself from cheating☆49Updated last year
- Reimplement CreateProcessInternalW via Windows 10 20H1+/Windows 11 Base on NtCreateUserProcess-Post☆78Updated last year
- .data ptr swapper for newer win32k versions. (Supports Windows 11)☆33Updated 3 weeks ago
- Demo to show how write ALPC Client & Server using native Ntdll.dll syscalls.☆21Updated 4 years ago
- ☆24Updated 2 years ago
- research revolving the windows filtering platform callout mechanism☆38Updated last year
- Usermode NT Explorer - Query kernel addresses, translate virtual to physical addresses, inspect the PFN database, and more.☆68Updated last week
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆79Updated 3 years ago