rbmm / PfxViewer
☆10Updated 2 months ago
Alternatives and similar repositories for PfxViewer:
Users that are interested in PfxViewer are comparing it to the libraries listed below
- ☆21Updated 10 months ago
- really ?☆12Updated last year
- Repository of Microsoft Driver Block Lists based off of OS-builds☆39Updated 11 months ago
- Threadless injection via TLS callbacks☆16Updated 4 months ago
- ☆25Updated last month
- Self Delete DLL☆23Updated last year
- https://github.com/janoglezcampos/c_syscalls with the ASM rewritten by myself for Visual Studio's Compiler.☆30Updated 9 months ago
- ☆18Updated 2 months ago
- This POC provides the possibilty to execute x86 shellcode in form of a .bin file based on x86 inline assembly☆18Updated last year
- An example of COM hijacking using a proxy DLL.☆28Updated 3 years ago
- ☆24Updated last month
- RunPE adapted for x64 and written in C, does not use RWX☆24Updated 10 months ago
- Cobalt Strike notifications via NTFY.☆13Updated 6 months ago
- Released presentations of my talks + code that used during these talks☆13Updated 6 months ago
- Your NTDLL vaccine from modern direct syscall methods.☆35Updated 2 years ago
- Hooked create process injection for meterpreter☆23Updated 3 years ago
- Windows kernel☆12Updated 4 years ago
- Read ETW Provider events. Inspired by ETWExplorer by Pavel Yosifovich☆14Updated 8 months ago
- Evilbytecode-Gate resolves Windows System Service Numbers (SSNs) using two methods: analyzing the Guard CF Table in ntdll.dll and parsing…☆20Updated last month
- ☆29Updated last year
- A pure C version of SymProcAddress☆26Updated last year
- ☆12Updated last year
- Dump Lsass Memory Using a Reflective Dll☆14Updated 3 years ago
- Research into removing strings & API call references at compile-time (Anti-Analysis)☆25Updated 9 months ago
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆26Updated last year
- ☆23Updated 10 months ago
- Small tool to play with IOCs caused by Imageload events☆42Updated last year
- Manually perform syscalls without going through any external API or DLL.☆18Updated last year
- A simple BOF that disables some logging with NtSetInformationProcess☆10Updated last year
- A tracker DLL which enables 'NTAPI->Syscall' tracking whenever it is loaded. It calls 'NtSetInformationProcess' API call with a callback …☆12Updated 5 months ago