Load and unload a DLL into an remote process without using WriteProcessMemory ;)
☆16Jun 8, 2014Updated 11 years ago
Alternatives and similar repositories for AlternativeCreateRemoteThread-public
Users that are interested in AlternativeCreateRemoteThread-public are comparing it to the libraries listed below
Sorting:
- hooklib is a library that is used to inject DLL libraries in the processes, the interception code and the implementation of IPC.☆22Nov 18, 2015Updated 10 years ago
- Examples for detection of hidden processes on windows☆35Jun 11, 2014Updated 11 years ago
- A memory engine that scans, debugs and disassembles an applications memory space.☆14Oct 29, 2017Updated 8 years ago
- Scanning and identifying XOR encrypted PE files in PE resources☆30Jun 22, 2014Updated 11 years ago
- Today Plugin (x64) - A Plugin For x64dbg☆13Jul 17, 2018Updated 7 years ago
- Pintool to detect Read before Write memory access☆21Mar 20, 2013Updated 12 years ago
- ☆20Aug 18, 2020Updated 5 years ago
- This tool parses NTDLL.DLL, extracts all the syscall numbers and helps in making direct syscalls, in order to help evasion.☆15Jun 6, 2022Updated 3 years ago
- simple PE packer written in C++☆56Feb 23, 2018Updated 8 years ago
- Convert native dll to shellcode, and support exported function☆25Feb 10, 2021Updated 5 years ago
- Better version of RunDll with GUI. This program allows you to load DLLs on Windows. You can select how to load the DLL. By direct Entry P…☆240Apr 8, 2015Updated 10 years ago
- profiling tool for analysising the games, get all the characteristic by hook d3d☆18Oct 10, 2014Updated 11 years ago
- ☆13Jun 5, 2018Updated 7 years ago
- An attempt to reverse-engineer the protocol for Diablo III, allowing a MITM attack on the game by intercepting packets as they pass throu…☆13Jun 21, 2012Updated 13 years ago
- An ark tool's driver☆40May 11, 2017Updated 8 years ago
- A manual PE mapping implementation, aka reflective loader☆21Sep 11, 2022Updated 3 years ago
- ☆14Apr 20, 2017Updated 8 years ago
- Debugger checks in 3 ways☆19Jan 25, 2018Updated 8 years ago
- Virtual Machine Introspection (VMI) project☆15Apr 22, 2015Updated 10 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆26Jan 1, 2017Updated 9 years ago
- 一个早期的抗启发式查杀的WIN32免杀壳☆45Jun 30, 2013Updated 12 years ago
- A simple tool to help reverse engineers while dealing with obfuscated code.☆20Sep 5, 2016Updated 9 years ago
- Zydis Pascal Bindings☆21Nov 20, 2023Updated 2 years ago
- 仿WPE拦截Socket☆18Nov 7, 2013Updated 12 years ago
- Some interesting code☆18Jan 16, 2015Updated 11 years ago
- An example of PE hollowing injection technique☆25Jun 28, 2019Updated 6 years ago
- Open Source Libraries Collection☆24Jan 1, 2016Updated 10 years ago
- 使用SSDT HOOK 在windows上隐藏指定文件或者文件夹☆27Feb 24, 2021Updated 5 years ago
- Complete environement for network injected reversing☆21Dec 25, 2016Updated 9 years ago
- XEDParse emulator based on asmjit/asmtk.☆21Mar 22, 2024Updated last year
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 8 years ago
- Infects PE files with a shellcode☆22Oct 20, 2018Updated 7 years ago
- Bypass HackShield several specific SSDT hook in Ring0☆24Mar 10, 2015Updated 10 years ago
- Clientless Bot for League of Legends < v4.20 + Control Panel☆47Aug 24, 2017Updated 8 years ago
- Simple header only library to change return address on current stack frame.☆22Sep 4, 2016Updated 9 years ago
- PoC for detecting and dumping code injection (built and extended on UnRunPE)☆58Oct 23, 2018Updated 7 years ago
- Core of Linux hooking engine for ARM architecture☆22Jan 16, 2018Updated 8 years ago
- MemoryHacker is a tool which can search for values on the target process!☆22Jul 21, 2016Updated 9 years ago
- Spoof Windows Test Signing Mode☆29Oct 13, 2018Updated 7 years ago