skykami / www.rootkit.com
www.rootkit.com users section mirror, sql database dump, and a few other files/rootkits.
☆16Updated 8 years ago
Related projects ⓘ
Alternatives and complementary repositories for www.rootkit.com
- NT AUTHORITY\SYSTEM☆38Updated 4 years ago
- "An Introduction to Windows Exploit Development" is an open sourced, free Windows exploit development course I created for the Southeast …☆39Updated 4 years ago
- Implementation of Advanced Module Stomping and Heap/Stack Encryption☆9Updated last year
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- ☆17Updated 3 years ago
- Various tools, PoCs and experiments related to my blog at https://www.forrest-orr.net/☆35Updated 3 years ago
- 2022 Updated Kernelmode-Code☆30Updated 7 months ago
- Listing UDP connections with remote address without sniffing.☆30Updated last year
- A Practical example of ELAM (Early Launch Anti-Malware)☆30Updated 2 years ago
- This x64dbg plugin allows you to upload your sample to Malcore and view the results.☆32Updated last year
- ☆24Updated 11 months ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆16Updated last year
- Progress of learning kernel development☆14Updated last year
- Neutralize KEPServerEX anti-debugging techniques☆31Updated last year
- call gates as stable comunication channel for NT x86 and Linux x86_64☆30Updated last year
- Recreating and reviewing the Windows persistence methods☆39Updated 2 years ago
- Rite Of Passage ROP Injector☆34Updated 5 years ago
- Slides from various conference talks☆36Updated last year
- Piece of code to detect and remove hooks in IAT☆58Updated 2 years ago
- ☆22Updated 4 years ago
- Process Injection without R/W target memory and without creating a remote thread☆19Updated 2 years ago
- Here are some of my malware reversing papers that I will be publishing☆31Updated 2 years ago
- Extract data of TTD trace file to a minidump☆28Updated last year
- ☆37Updated last year
- Enabled / Disable LSA Protection via BYOVD☆62Updated 2 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆69Updated last year
- A years-old exploit of a local EoP vulnerability in Kingsoft Antivirus KWatch Driver version 2009.3.17.77.☆36Updated 2 years ago
- ☆25Updated last week
- ☆27Updated 11 months ago