A kernel level anti-rootkit tool which runs on the windows platform.
☆92Apr 18, 2014Updated 11 years ago
Alternatives and similar repositories for ScDetective
Users that are interested in ScDetective are comparing it to the libraries listed below
Sorting:
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 8 years ago
- ☆14Jan 10, 2017Updated 9 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆79Jan 24, 2011Updated 15 years ago
- XDK is a fully featured C++ wrapper library for Windows kernel development☆21Jan 20, 2016Updated 10 years ago
- Windows kernel-mode callbacks tutorial driver☆48Aug 8, 2016Updated 9 years ago
- An ark tool's driver☆40May 11, 2017Updated 8 years ago
- Test code only. Not suitable for actual use.☆96Apr 19, 2015Updated 10 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆22May 31, 2017Updated 8 years ago
- Minifilter Driver☆15Feb 10, 2017Updated 9 years ago
- A Windows driver used to facilitate DLL injection☆27Oct 29, 2017Updated 8 years ago
- A system call tracer☆10Sep 22, 2014Updated 11 years ago
- ☆17Oct 24, 2016Updated 9 years ago
- just an lite AntiRootkit for interesting☆24Dec 9, 2015Updated 10 years ago
- windows kernel File redirection☆20Sep 21, 2014Updated 11 years ago
- ☆14Aug 15, 2018Updated 7 years ago
- ☆14Jun 24, 2017Updated 8 years ago
- 驱动层拦截web访问源码☆30Apr 2, 2018Updated 7 years ago
- Code injection by hijacking threads in Windows 32-bit applications☆44Oct 3, 2018Updated 7 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆78Aug 12, 2015Updated 10 years ago
- ☆17Mar 3, 2016Updated 10 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆29Dec 5, 2017Updated 8 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆27May 21, 2014Updated 11 years ago
- Spoof Windows Test Signing Mode☆29Oct 13, 2018Updated 7 years ago
- An analytical debugger programmed in C++, using Qt.☆22May 20, 2012Updated 13 years ago
- Modify process handle permissions☆61Nov 30, 2016Updated 9 years ago
- Vulnerable Windows Driver with exploits which were used for demonstration purposes on Hunting and exploiting bugs in kernel drivers prese…☆13Jan 29, 2013Updated 13 years ago
- ☆12Feb 19, 2017Updated 9 years ago
- Ssdt Hook Detection tool☆13Nov 11, 2016Updated 9 years ago
- pcmonitor - windows kernel driver to monitor users activity(such as keyboard input, screenshot) and send encrypted reports to mobile appl…☆118Feb 5, 2014Updated 12 years ago
- RVDbg is a debugger/exception handler for Windows processes and has the capability to circumvent anti-debugging techniques. (Cleaner, doc…☆72Sep 5, 2020Updated 5 years ago
- Old exploits and code for my self-referencing PML4 technique (2014)☆32May 8, 2015Updated 10 years ago
- Anti-Anti-VM solution via Windows Driver☆62May 8, 2018Updated 7 years ago
- RootKit & Cheat Scanner - Windows☆225Aug 9, 2019Updated 6 years ago
- Windows Kernel Driver with C++ runtime☆181Sep 26, 2020Updated 5 years ago
- Kinject - kernel dll injector, currently available in x86 version, will be updated to x64 soon.☆32Apr 10, 2015Updated 10 years ago
- wow64 syscall filter☆13Nov 12, 2014Updated 11 years ago
- 一个简单的用于win7 x64的驱动级HIPS☆57Mar 7, 2016Updated 9 years ago
- Final Transparent encrypted version☆14Jan 10, 2017Updated 9 years ago
- Wow64 syscall hook☆43May 28, 2017Updated 8 years ago