mrexodia / portable-executable-library
Automatically exported from code.google.com/p/portable-executable-library
☆22Updated 8 years ago
Related projects ⓘ
Alternatives and complementary repositories for portable-executable-library
- Implementation of a dispatcher for Structured Exceptions inside a Vectored Exception Handler☆37Updated 4 years ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆40Updated 2 years ago
- Manual PE image mapper☆61Updated 11 years ago
- I was challenged by a friend to list all the processes and drivers in a system using more "unusual" methods. By doing this I learned quit…☆17Updated 8 years ago
- This is the first software system, which can detect a stealthy hypervisor and calculate several nested ones even under countermeasures.☆83Updated 9 years ago
- Parser for Microsoft Program Database (PDB) files☆74Updated 4 years ago
- Library for kernel and user mode splicing for Windows (x86 and x64).☆62Updated 12 years ago
- Automatically exported from code.google.com/p/portable-executable-library☆23Updated 5 years ago
- Examples of Static and Dynamic Thread Local Storage Callback Creation☆19Updated 7 years ago
- POC of sysenter x64 LSTAR MSR hook☆38Updated 10 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆48Updated 3 years ago
- ☆66Updated 3 years ago
- Resolve DOS MZ executable symbols at runtime☆93Updated 3 years ago
- usermode standalone kernel interface☆110Updated 6 years ago
- Visual Studio Project example for using Microsoft's STL in WDM (Windows Kernel-mode Driver)☆23Updated 3 years ago
- IA32-doc is a project which aims to put as many definitions from the Intel Manual into machine-processable format as possible☆16Updated 2 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆73Updated 13 years ago
- r0akmap is a PoC driver manual mapper based on r0ak☆39Updated 6 years ago
- Analyze PatchGuard☆53Updated 6 years ago
- Figuring out the cause of a handle downgrade☆23Updated last year
- x64 PE-COFF virtualization driven obfuscation engine☆53Updated 2 years ago
- Code injection by hijacking threads in Windows 32-bit applications☆43Updated 6 years ago
- Retrieve pointers to undocumented kernel functions and offsets to members within undocumented structures to use in your driver by using t…☆53Updated 5 years ago
- Simple proof of concept code for injecting libraries on 64bit processes from a 32bit process☆93Updated 6 years ago
- ☆62Updated 11 years ago
- This x64dbg plugin adds several commands for dumping PE header information by address.☆60Updated 7 years ago
- Reading/writing memory from kernel-mode☆21Updated 7 years ago
- Capcom wrapper with safety in mind.☆79Updated 6 years ago
- C++ 17 compile time string encryption supporting vs2010-2019☆73Updated 4 years ago