stormshield / Beholder-Win32Links
A sample on how to inject a DLL from a kernel driver
☆61Updated 9 years ago
Alternatives and similar repositories for Beholder-Win32
Users that are interested in Beholder-Win32 are comparing it to the libraries listed below
Sorting:
- Code injection by hijacking threads in Windows 32-bit applications☆43Updated 7 years ago
- (DEPRECATED) A simple anti-anti debug library for Windows☆30Updated 5 years ago
- Windows handle stealing POC with NtDuplicateObject☆41Updated 8 years ago
- Standalone program to download PDB Symbol files for debugging without WDK☆80Updated 6 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆79Updated 14 years ago
- Kernel mode driver loader, injecting into the windows kernel, Rootkit. Driver injections.☆48Updated 11 years ago
- Manual PE image mapper☆66Updated 12 years ago
- Analysing and defeating PatchGuard universally☆36Updated 5 years ago
- A Windows game hacking framework☆42Updated 9 years ago
- Remote memory library in C++17.☆34Updated 7 years ago
- kernel-mode TDI client which can send and receive HTTP requests☆56Updated 7 years ago
- Скрытие строки от отладчиков и декомпиляторов☆51Updated 6 years ago
- Analyze PatchGuard☆56Updated 7 years ago
- usermode standalone kernel interface☆111Updated 7 years ago
- Polymorphic Stub Creator☆34Updated 8 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆25Updated 9 years ago
- Simple proof of concept code for injecting libraries on 64bit processes from a 32bit process☆96Updated 7 years ago
- PoC for detecting and dumping process hollowing code injection☆52Updated 7 years ago
- drvtriks kernel driver for Windows 7 SP1 and 8.1 x64, that tricks around in your system.☆34Updated 8 years ago
- Hiding x32/x64 Modules/DLLs using PEB☆62Updated 10 years ago
- Anti-Anti-VM solution via Windows Driver☆62Updated 7 years ago
- A command line tool to load and unload a device driver.☆46Updated 8 years ago
- win32/x64 obfuscate framework☆33Updated 6 years ago
- PoC for detecting and dumping code injection (built and extended on UnRunPE)☆58Updated 7 years ago
- Example of hijacking system calls via function pointer tables☆31Updated 4 years ago
- POC of sysenter x64 LSTAR MSR hook☆41Updated 11 years ago
- A simple kernel mode driver that hooks some values at the KUSER_SHARED_DATA structure.☆27Updated 6 years ago
- Windows Manipulation Library (x64, User/Kernelmode)☆77Updated 7 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆79Updated 10 years ago
- A simple program to scan for open handles in a process.☆60Updated 9 years ago