ljvblfz / WindowsKernelPhilosophyLinks
Windows内核设计思想
☆26Updated 8 years ago
Alternatives and similar repositories for WindowsKernelPhilosophy
Users that are interested in WindowsKernelPhilosophy are comparing it to the libraries listed below
Sorting:
- ☆27Updated 6 years ago
- createfile☆50Updated 10 years ago
- 内核级ARK工具。☆62Updated 9 years ago
- ☆24Updated 8 years ago
- map driver to memory☆26Updated 7 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆29Updated 8 years ago
- x64 Kernel Hooks Detection☆24Updated 9 years ago
- An ark tool's driver☆40Updated 8 years ago
- 锁主页驱动☆42Updated 6 years ago
- ☆40Updated 6 years ago
- x64HOOK库☆18Updated 6 years ago
- You don't need install any wdk for development kernel driver☆24Updated 7 years ago
- network filter driver that control network send speed, based on windows tdi framework.☆31Updated last year
- 大表哥的Syscall-Monitor☆34Updated 6 years ago
- 逆的或者收集的别人家的代码☆29Updated last year
- just an lite AntiRootkit for interesting☆24Updated 10 years ago
- ☆36Updated 8 years ago
- by others☆40Updated 8 years ago
- Hook IDT vector 0xb2 to detect SCI in 64bit windows.☆34Updated 3 years ago
- windows inlinehook R3 R0☆11Updated 7 years ago
- ☆27Updated 8 years ago
- 一个可以帮助你进行Windows驱动开发和分析的工具。☆46Updated 4 years ago
- Sysark全称system anti-rootkit,是我学习内核写的工具(2013年的代码,后续不会再更新),里面基本上所有的功能都是用内核实现的。这里只是实现了反rootkit部分功能,作为工具的话,本人觉得还欠完善,但作为学习,或有人需要。目前针对的是XP SP2,…☆27Updated 8 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆27Updated 11 years ago
- enable libemu run pe file and add some good modify☆14Updated 7 years ago
- This is a VmProtect integrated debugger, that will essentially allow you to disasm and debug vmp partially virtualized functions at the v…☆47Updated 9 years ago
- Map memory to user space and manipulate user memory, using capmon☆24Updated 7 years ago
- 寒江独钓 Windows内核安全编程☆45Updated 13 years ago
- Kinject - kernel dll injector, currently available in x86 version, will be updated to x64 soon.☆32Updated 10 years ago
- The demo on Windows☆21Updated 9 years ago