A kernel level anti-rootkit tool which runs on the windows platform.
☆92Apr 18, 2014Updated 11 years ago
Alternatives and similar repositories for ScDetective
Users that are interested in ScDetective are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 8 years ago
- ☆14Jan 10, 2017Updated 9 years ago
- ☆17Oct 24, 2016Updated 9 years ago
- XDK is a fully featured C++ wrapper library for Windows kernel development☆21Jan 20, 2016Updated 10 years ago
- Windows kernel-mode callbacks tutorial driver☆48Aug 8, 2016Updated 9 years ago
- An ark tool's driver☆40May 11, 2017Updated 8 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆79Jan 24, 2011Updated 15 years ago
- Minifilter Driver☆15Feb 10, 2017Updated 9 years ago
- A system call tracer☆10Sep 22, 2014Updated 11 years ago
- ☆14Jun 24, 2017Updated 8 years ago
- Test code only. Not suitable for actual use.☆96Apr 19, 2015Updated 10 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆27May 21, 2014Updated 11 years ago
- A Windows driver used to facilitate DLL injection☆27Oct 29, 2017Updated 8 years ago
- Spoof Windows Test Signing Mode☆29Oct 13, 2018Updated 7 years ago
- windows kernel File redirection☆20Sep 21, 2014Updated 11 years ago
- The project is a demo solution for one of the anti-rootkit techniques aimed on overcoming splicers☆34Mar 13, 2017Updated 9 years ago
- ☆17Mar 3, 2016Updated 10 years ago
- Kinject - kernel dll injector, currently available in x86 version, will be updated to x64 soon.☆32Apr 10, 2015Updated 10 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆29Dec 5, 2017Updated 8 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆78Aug 12, 2015Updated 10 years ago
- Shareds for kernel developement☆29Dec 23, 2013Updated 12 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆23May 31, 2017Updated 8 years ago
- just an lite AntiRootkit for interesting☆24Dec 9, 2015Updated 10 years ago
- 驱动层拦截web访问源码☆30Apr 2, 2018Updated 7 years ago
- Modify process handle permissions☆61Nov 30, 2016Updated 9 years ago
- Ssdt Hook Detection tool☆13Nov 11, 2016Updated 9 years ago
- Vulnerable Windows Driver with exploits which were used for demonstration purposes on Hunting and exploiting bugs in kernel drivers prese…☆13Jan 29, 2013Updated 13 years ago
- Protect process fsfilter driver. Windows x64☆36Apr 11, 2016Updated 9 years ago
- Confirms the capability of Hardware-Accelerated Virtualization Technology.☆10Feb 26, 2026Updated 3 weeks ago
- Code injection by hijacking threads in Windows 32-bit applications☆44Oct 3, 2018Updated 7 years ago
- Hidden kernel mode code execution for bypassing modern anti-rootkits.☆85Dec 23, 2010Updated 15 years ago
- wow64 syscall filter☆13Nov 12, 2014Updated 11 years ago
- Windows inject☆17Jun 7, 2018Updated 7 years ago
- PoC for detecting and dumping code injection (built and extended on UnRunPE)☆58Oct 23, 2018Updated 7 years ago
- ☆12Feb 19, 2017Updated 9 years ago
- Library for kernel and user mode splicing for Windows (x86 and x64).☆64Oct 29, 2012Updated 13 years ago
- Old exploits and code for my self-referencing PML4 technique (2014)☆32May 8, 2015Updated 10 years ago
- Automatically exported from code.google.com/p/virtdbg☆99Jun 25, 2015Updated 10 years ago
- Windows Kernel Driver with C++ runtime☆181Sep 26, 2020Updated 5 years ago