Modern C++ wrapper for Windows PE signature verification mechanism
☆30Aug 9, 2019Updated 6 years ago
Alternatives and similar repositories for windows-pe-signature-verifying
Users that are interested in windows-pe-signature-verifying are comparing it to the libraries listed below
Sorting:
- x64 Kernel Hooks Detection☆24Jan 1, 2017Updated 9 years ago
- Simple programmatic Windows processes monitor.☆26Mar 8, 2015Updated 11 years ago
- This program can retrieve signature information from PE files which signed by one or more certificates on Windows. Supporting multi-signe…☆105Sep 20, 2022Updated 3 years ago
- Monitor ETW events for Windows process mitigation policies, with stack traces☆31Oct 7, 2022Updated 3 years ago
- Process doppelganging POC using direct system calls, PPID spoofing and dropbox as an external delivery channel for the payload.☆16Jan 7, 2021Updated 5 years ago
- A general solution to simulate execution of virtualized instructions (vmprotect/themida, etc.).☆77Feb 9, 2022Updated 4 years ago
- first commit☆64Oct 29, 2020Updated 5 years ago
- The driver STL library used by myself☆13Oct 19, 2022Updated 3 years ago
- Using C++ STL on Windows kernle development☆91Feb 21, 2019Updated 7 years ago
- [POC Detected]Bypass BE Anti Dll Injection (POC/Need Driver)☆17Mar 30, 2020Updated 5 years ago
- A PE32/PE32+ parser written in MASM32☆13Feb 24, 2016Updated 10 years ago
- eac memory sig maker☆14Jun 10, 2021Updated 4 years ago
- Rete algorithm implemented by C++☆15Mar 15, 2018Updated 8 years ago
- 共享esig特征文件库☆10Dec 18, 2020Updated 5 years ago
- Windows Minifilter driver that redirects any I/O Request of mp3 files to a target file☆18Jul 7, 2015Updated 10 years ago
- PE file manipulation library.☆64Jan 27, 2020Updated 6 years ago
- The demo on Windows☆21Mar 6, 2016Updated 10 years ago
- ☆27Apr 4, 2019Updated 6 years ago
- Virtual Machine for x64 and x86 systems☆37Apr 13, 2025Updated 11 months ago
- Obfuscation method using virtual machines.☆27Mar 2, 2020Updated 6 years ago
- 简配的ci☆10Jun 16, 2019Updated 6 years ago
- Hardware and software inventory for Microsoft Windows systems☆17Oct 16, 2015Updated 10 years ago
- Hide Driver By MiProcessLoaderEntry☆294May 17, 2019Updated 6 years ago
- ☆13Jun 26, 2020Updated 5 years ago
- Windows PE Signature Thief in C++☆51Aug 21, 2020Updated 5 years ago
- Small C++ cryptography library based on Qt and OpenSSL.☆20Jul 11, 2024Updated last year
- kernel-mode TDI client which can send and receive HTTP requests☆56Jun 9, 2018Updated 7 years ago
- direct systemcalls with a modern c++20 interface.☆45Jan 6, 2023Updated 3 years ago
- ☆39Oct 29, 2020Updated 5 years ago
- A cross-platform rust no-std library for verifying and extracting signature information from PE files.☆73Dec 2, 2024Updated last year
- A simple ransomware defender.It uses minifilter to filt "rewrite" and "delete" events in kernel.And it handles event in user mode.☆27Aug 14, 2018Updated 7 years ago
- An OS-level container which virtualizes Windows' file system, registry, kernel, and network communication.☆105Apr 9, 2015Updated 10 years ago
- A simple parser(library) which extracts shimcache data from windows.☆15May 20, 2019Updated 6 years ago
- windows kernel pagehook☆42Oct 30, 2022Updated 3 years ago
- repeater☆25Aug 25, 2023Updated 2 years ago
- 粗暴地枚举管理内核的WFP对象。 Manage kernel WFPs in a brutal way.☆27Jan 14, 2018Updated 8 years ago
- Examples of Static and Dynamic Thread Local Storage Callback Creation☆24Apr 6, 2017Updated 8 years ago
- 这是我的博客《菜鸟与 cef 的邂逅之旅(四):Soui 离屏渲染封装 Cef3 细节分析》的实验代码(代码参考蓝先生和启程的 Demo)☆17Aug 14, 2017Updated 8 years ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆109Sep 1, 2022Updated 3 years ago