oxiKKK / iat-dumpLinks
A dumper for all the imports stored within a Windows PE (portable executable).
☆15Updated 3 years ago
Alternatives and similar repositories for iat-dump
Users that are interested in iat-dump are comparing it to the libraries listed below
Sorting:
- just proof of concept. hooking MmCopyMemory PG safe.☆77Updated 2 years ago
- ☆35Updated 3 years ago
- ☆72Updated 3 years ago
- Discarded Section Manual Map☆68Updated 5 years ago
- Old way for blocking NMI interrupts☆27Updated 3 years ago
- 将驱动映射到会话空间☆37Updated 3 years ago
- ☆61Updated 3 years ago
- Scans all modules in target process for jmp/int3 hooks dissassembles then and follows jmps to destination.☆79Updated 2 years ago
- page table manipulation to gain physical r/w☆42Updated last year
- ☆43Updated 4 years ago
- ☆48Updated 3 years ago
- i stole this from some guys private repo on github☆58Updated 4 years ago
- PointerGuard is a proof-of-concept tool used to create 'guarded' pointers which disguise pointer addresses, monitor reads/writes, and pre…☆53Updated 3 years ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆73Updated 2 years ago
- A basic demonstration of directly overwriting paging structures for physical memory r/w and interprocess memory copy☆97Updated 2 years ago
- Library to manipulate drivers that expose a physical memory read/write primitive.☆31Updated 2 years ago
- Reverse Engineering a signed kernel driver packed and virtualized with VMProtect 3.6