keowu / KethoMemoryToolKit
KethoMemoryToolKit is a set of tools used by me to change OPCODES of the memory of any process running in the operating system of specific offsets(RVA) from an ImageBase.
☆7Updated 4 years ago
Alternatives and similar repositories for KethoMemoryToolKit:
Users that are interested in KethoMemoryToolKit are comparing it to the libraries listed below
- Learn Winapi in this Repo with examples, to understand its abstraction in reverse engineering for Windows.☆9Updated 2 years ago
- AMx64 is a simulated 64-bit environment that can interpret nasm-like asm code. It allows a usage of different 64-bit registers and 64-bit…☆23Updated last year
- Plugin for x64dbg to disable parallel loading of dependencies☆19Updated 2 years ago
- Devirtualizer for VirtualGuard Protector using AsmResolver☆39Updated last year
- Deobfuscator for remove proxy calls methods☆24Updated 2 years ago
- Input-output driver☆24Updated last year
- Black Signature Driver☆22Updated last year
- Signature scanner and API hooks to detect malicious process injection☆25Updated last year
- Native API header files for the Process Hacker project (nightly).☆25Updated this week
- simple shared memory kernel-driver (its ass)☆11Updated last year
- Easy DWM switcher without Winlogon suspension☆18Updated last year
- Not mine, just saved☆13Updated last year
- C++ Program used to dump Themida and VMProtect.☆23Updated last year
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated 2 years ago
- A Windows native DLL injection library written in C# that supports several methods of injection.☆13Updated 6 years ago
- ASLR Disabler (x86 / x64) - Little utility for disabling the ASLR on PE files☆14Updated last year
- A class to gather information about a process, its threads and modules.☆24Updated 4 years ago
- ☆14Updated 12 years ago
- Injector with kernel power☆16Updated 4 years ago
- https://www.huorong.cn/☆14Updated 10 months ago
- combine the power of procmon and dbgview into one single application☆6Updated last year
- Process Creation, Image Load and Thread Creation Notification☆11Updated last year
- Windows system repair tool☆20Updated 3 years ago
- Uses a driver to read/write process memory☆12Updated 4 years ago
- x64 Windows privilege elevation using anycall☆21Updated 3 years ago
- Nightshade is a Windows Memory Manipluation library specifically for injecting DLLs and Game Hacking☆14Updated 2 years ago
- View Windows System in action☆39Updated 2 months ago
- EDR PoC WIP LLC☆10Updated last year
- Updated VMP Demutator from sn0w☆32Updated 3 years ago
- Bypassing kernel patch protection runtime☆19Updated 2 years ago