nbqofficial / CTHD
Process hiding library
☆19Updated 4 years ago
Alternatives and similar repositories for CTHD:
Users that are interested in CTHD are comparing it to the libraries listed below
- Abusing RtlAdjustPrivilege and NtSetInformationProcess to cause a BSOD from usermode☆17Updated 2 years ago
- Hijack NotifyRoutine for a kernelmode thread☆41Updated 2 years ago
- Stealthy Injector that leverages a vulnerable driver and other exploits to remain undetected☆36Updated 6 years ago
- Simple driver loader for windows☆18Updated 4 years ago
- Скрытие строки от отладчиков и декомпиляторов☆50Updated 5 years ago
- Bypasses for Windows kernel callbacks PatchGuard protection☆43Updated 3 years ago
- A packed & protected Module Loader and more, for 64-bit Windows☆28Updated 3 years ago
- ☆37Updated last year
- PAGE_GUARD based hooking library☆42Updated 2 years ago
- Stealing signatures from pe files☆16Updated 2 years ago
- Using SetWindowHookEx for preinjected DLL's☆57Updated 2 years ago
- Register a callback from a Manually mapped kernel module☆15Updated 3 years ago
- x64 Windows privilege elevation using anycall☆21Updated 3 years ago
- Single header library to simplify the usage of direct syscalls. x64/x86☆11Updated last year
- ☆18Updated 2 years ago
- A poc that abuses Enclave☆36Updated 2 years ago
- A C++ syscall ID extractor for Windows. Developed, debugged and tested on 20H2.☆20Updated 3 years ago
- a dumb rpm/wpm example driver☆14Updated 3 years ago
- Written in a couple hours, don't judge :)☆14Updated last year
- POC kernel driver with hidden system thread☆13Updated 9 months ago
- mouseclassservicecallback detection via hook☆50Updated 3 years ago
- UnknownField is a tool based clang that obfuscating the order of fields to protect your C/C++ game or code.☆44Updated 2 years ago
- a driver to enumerate registered pnp callbacks for a particular interface class based on reversal of IoRegisterPlugPlayNotification☆11Updated 11 months ago
- x64 assembler library☆31Updated 8 months ago
- A dumper for all the imports stored within a Windows PE (portable executable).☆15Updated 2 years ago
- ☆13Updated 3 years ago
- Compile-Time Strings and Numbers Encryption for C++20☆41Updated last week
- manual mapping injector☆28Updated 2 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆48Updated 3 years ago