idandev / hidefile-kernel-module
A simple kernel module who hides a file by hooking the getdents64 syscall.
☆10Updated 2 years ago
Alternatives and similar repositories for hidefile-kernel-module:
Users that are interested in hidefile-kernel-module are comparing it to the libraries listed below
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆55Updated 11 months ago
- A Hyper-V Hacking Framework For Windows 10 x64 (AMD & Intel)☆46Updated last year
- Kernel ReClassEx☆64Updated last year
- Windows PDB parser for kernel-mode environment.☆94Updated 2 years ago
- detect hypervisor with Nmi Callback☆34Updated 2 years ago
- Cross-Platform Framework for High-Speed Memory Pattern Scanning with Multithreading, SIMD Support, and Alternative STL ETL Integration☆37Updated last week
- A devirtualization engine for Themida.☆94Updated 10 months ago
- vdk is a set of utilities used to help with exploitation of a vulnerable driver.☆39Updated 2 years ago
- Me fockin' pe protector☆45Updated 2 years ago
- Improved VMP Idea(detect anti-anti-debug tools by bug)☆42Updated last year
- ☆127Updated 2 years ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆71Updated last year
- Load dll with undocumented functions and debug symbols☆46Updated 6 months ago
- Code virtualizer☆23Updated 8 years ago
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆49Updated last year
- POC Hook of nt!HvcallCodeVa☆50Updated last year
- intel vt-x type 2 hypervisor☆49Updated 7 months ago
- DSE & PG bypass via BYOVD attack☆41Updated 9 months ago
- ☆71Updated 2 years ago
- A simple ida python script to find .data ptr☆48Updated last year
- Windows kernel driver template for cmkr (with testsigning).☆30Updated last year
- A collection of LLVM passes for obfuscating☆31Updated last year
- Create stealthy, inline, EPT-like hooks using SMAP and SMEP☆36Updated 3 months ago
- nmi stackwalking + module verification☆102Updated last year
- Obfuscate calls to imports by patching in stubs☆66Updated 3 years ago
- Force a file delete using a windows kernel driver☆62Updated 2 years ago
- VMProtectTest☆37Updated last year
- A library to assist with memory & code protection.☆53Updated 10 months ago
- just proof of concept. hooking MmCopyMemory PG safe.☆65Updated last year
- A small tool for rapid enumeration of CPUID, and MSR fields.☆19Updated last year