r41p41 / BotKiller
find and kill injectedThreads from memory
☆10Updated 9 years ago
Alternatives and similar repositories for BotKiller:
Users that are interested in BotKiller are comparing it to the libraries listed below
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆22Updated 7 years ago
- User-mode part of Zerokit platform☆20Updated 5 years ago
- User-mode process cross-checking utility intended to detect naive malware hiding itself by hooking IAT/EAT.☆19Updated 8 years ago
- Analysis and Modification Tool for Executables☆16Updated 5 years ago
- Class implementation of PowerLoader injection technique☆29Updated 8 years ago
- Simple PE packer with RtlCompressBuffer☆21Updated 9 years ago
- Windows registry files interactive viewer☆9Updated 7 years ago
- Common Malware Techniques☆13Updated last year
- wow64 syscall filter☆13Updated 10 years ago
- metasploit loader with antivirus bypass module☆17Updated 8 years ago
- Legal access: The driver and console app to demonstrate the basic memory access in kernel mode☆9Updated 7 years ago
- A simple native code virtualizer for 32-bit Windows PE☆15Updated 9 years ago
- Anti-AV compilation☆42Updated 11 years ago
- windows kernel File redirection☆20Updated 10 years ago
- ☆12Updated 12 years ago
- Decrypt the initial dropper of various exploit kits☆10Updated 7 years ago
- Code Injector Using Code Caves☆14Updated 9 years ago
- A Win32 PE/Executable Crypter that employs on the fly encryption & decryption of memory☆33Updated 11 years ago
- Malware monitor template based on MinHook☆16Updated 9 years ago
- CVE-2014-0816☆24Updated 8 years ago
- Kernel-mode file scanner☆18Updated 6 years ago
- ☆12Updated 8 years ago
- ☆12Updated 9 years ago
- Notes my learning steps about Windows-NT☆23Updated 7 years ago
- ☆13Updated 9 years ago
- Lists work items being queued currently.☆13Updated 9 years ago
- The project is a demo solution for one of the anti-rootkit techniques aimed on overcoming splicers☆34Updated 7 years ago
- An idea in hooking APIs by replacing calls that lead to them☆1Updated 2 years ago
- The Grum Spam Bot☆20Updated 9 years ago
- Reverse engineered vmware workstation code to aid in kernel debugging.☆14Updated 9 years ago