hkx3upper / Karlann
It's a kernel-based keylogger for Windows x86/x64.
☆126Updated 2 years ago
Related projects: ⓘ
- Radical Windows ARK☆199Updated last week
- 内核级别隐藏指定窗口☆290Updated 2 years ago
- an encryption library designed for Windows kernel and driver programming☆113Updated last year
- ☆178Updated last year
- etw hook (syscall/infinity hook) compatible with the latest Windows version of PG☆186Updated 4 months ago
- shellcode 生成框架☆232Updated 2 years ago
- Analyze Windows x64 Kernel Memory Layout☆121Updated 3 years ago
- 利用CE的DBK驱动加载未签名驱动☆22Updated 11 months ago
- ☆155Updated last year
- 研 究和移除各种内核回调,在anti anti cheat的路上越走越远☆165Updated 2 years ago
- ☆132Updated this week
- ☆155Updated 2 years ago
- A flexible PE loader, loading module in memory. Most of the functions can be inline, compatible for shellcode.☆153Updated 5 months ago
- 让Etwhook再次伟大! Make InfinityHook Great Again!☆120Updated 3 years ago
- 远程注入无导入函数dll,自动重定位以后内存加载dll☆44Updated 5 years ago
- ☆114Updated 11 months ago
- r/w virtual memory without attach☆144Updated 11 months ago
- 内核驱动加载/卸载痕迹清理,努力绕过反作弊吧 PiDDBCacheTable and MmLastUnloadedDriver☆136Updated last year
- 隐藏可执行内存☆239Updated 7 months ago
- Hide Process☆47Updated 2 months ago
- ☆78Updated 2 years ago
- query-pdb is a server-side software for parsing PDB files. The software provides PDB online parsing service.☆136Updated last week
- 从MmPfnData中枚举进程和页目录基址☆121Updated last year
- 一些使用过期或者注销证书的技术☆179Updated 5 years ago
- ☆46Updated last year
- ☆78Updated this week
- a Windows kernel Pdb parsing and downloading library that running purely in kernel mode without any R3 programs.☆108Updated last week
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆90Updated last year
- 句柄提权 无视反作弊读写游戏内存 用于分析游戏结构工具☆130Updated 3 years ago
- ☆245Updated last year