eddeeh / drv-client
A simple process query/manipulation tool using driver hooked system call. (2019)
☆9Updated 3 years ago
Alternatives and similar repositories for drv-client:
Users that are interested in drv-client are comparing it to the libraries listed below
- Abusing RtlAdjustPrivilege and NtSetInformationProcess to cause a BSOD from usermode☆17Updated 2 years ago
- x64 assembler library☆31Updated 10 months ago
- Injector with kernel power☆16Updated 4 years ago
- An example code of CiGetCertPublisherName☆14Updated 3 years ago
- Header only library for binding, reordering and currying of function arguments without cost☆18Updated 6 years ago
- cross platform library to manipulate and extract information of memory regions☆34Updated 7 years ago
- P2C Loader based on blackbone, used by isolation.top and others.☆14Updated 7 years ago
- Simple IOCTL hooking driver for Kernel- User - Mode communication.☆12Updated 4 years ago
- reveal and detect of common hooks under win32☆13Updated 4 years ago
- ☆14Updated 4 years ago
- A stack and register based virtual machine which can compile and execute arbitrary code in runtime☆43Updated last month
- Simplifies the Windows Kernel APIs by making the existing function easier to use, and extends them by creating functions that could possi…☆26Updated 2 weeks ago
- 🧶 The Win32 usermode threading library with UMS/fibers/threads support☆30Updated 5 years ago
- Remote memory library in C++17.☆31Updated 6 years ago
- simply manual map any system image☆17Updated 4 years ago
- A slightly safer io access library☆13Updated 3 years ago
- Translates WinDbg "dt" structure dump to a C structure☆13Updated 4 years ago
- ☆15Updated 4 years ago
- Manually Mapped Windows Kernel Driver + Usermode API for Arbitrary R/W to UM process via a UM thread trapped in kernel, synchronized with…☆16Updated 4 years ago
- Small memory leak PoC that is happening in IopGetDeviceInterfaces☆25Updated 4 years ago
- Two PoC of accessing process virtual memory via NT Kernel☆22Updated 3 years ago
- ☆22Updated last year
- ☆17Updated last year
- Native file compressor using only the ntdll.dll☆9Updated 7 years ago
- a driver to enumerate registered pnp callbacks for a particular interface class based on reversal of IoRegisterPlugPlayNotification☆11Updated last year
- Example of making debugger using Hardware Breakpoint + VEH☆18Updated 3 years ago
- eac memory sig maker☆12Updated 3 years ago
- Simple memory obfuscator.☆24Updated 2 years ago
- Debug Print viewer (user and kernel)☆66Updated last year
- Static Library For Windows Drivers☆33Updated last month