tanduRE / AvastHVLinks
Hooking SSDT with Avast Internet Security Hypervisor
☆114Updated 6 years ago
Alternatives and similar repositories for AvastHV
Users that are interested in AvastHV are comparing it to the libraries listed below
Sorting:
- Disable Driver Callbacks☆104Updated 8 years ago
- Intercepting DeviceControl via WPP☆135Updated 6 years ago
- Capcom wrapper with safety in mind.☆82Updated 7 years ago
- Prototype of hijacking Windows driver dispatch routines in unmapped discardable sections☆55Updated 6 years ago
- ☆154Updated 6 years ago
- x64 syscall caller in C++.☆93Updated 7 years ago
- disable most common windowsx64 systems patchguard☆86Updated 6 years ago
- Manual PE image mapper☆65Updated 12 years ago
- A library to read physical memory and system-wide virtual memory.☆127Updated 7 years ago
- Шаблон полнофункционального драйвера и обёртки над ядерным API☆115Updated 9 years ago
- Windows Driver Kit Extesion Header (Undoc)☆135Updated 4 years ago
- Communication via callback☆73Updated 6 years ago
- BattlEye x64 usermode injector☆65Updated 6 years ago
- A hypervisor hiding user-mode memory using EPT☆105Updated 7 years ago
- I'm going to be dropping code from the XC3 Driver (result of reversing the driver)☆70Updated 5 years ago
- ☆98Updated 8 years ago
- ☆68Updated 4 years ago
- usermode standalone kernel interface☆111Updated 7 years ago
- This is the first software system, which can detect a stealthy hypervisor and calculate several nested ones even under countermeasures.☆85Updated 10 years ago
- Collect different versions of Crucial modules.☆143Updated last year
- Retrieve pointers to undocumented kernel functions and offsets to members within undocumented structures to use in your driver by using t…☆64Updated 6 years ago
- Windows Manipulation Library (x64, User/Kernelmode)☆77Updated 7 years ago
- hook msr by amd svm☆124Updated 5 years ago
- Windows Kernel Driver dlls injector using APC☆63Updated 7 years ago
- based on https://github.com/secrary/Hooking-via-InstrumentationCallback☆72Updated 6 years ago
- Hide codes/data in the kernel address space.☆187Updated 4 years ago
- r0akmap is a PoC driver manual mapper based on r0ak☆39Updated 7 years ago
- Abusing SpeedFan driver ability of physical memory manipulation☆116Updated 7 years ago
- ayy debuger☆89Updated last year
- Currently supports injecting signed/unsigned DLLs in 64-bit processes☆63Updated 5 years ago