therealdreg / WinXPSP2.Cermalus
Malware WinXPSP2.Cermalus Windows Kernel Virus
☆15Updated last year
Related projects ⓘ
Alternatives and complementary repositories for WinXPSP2.Cermalus
- Simple PE packer with RtlCompressBuffer☆21Updated 9 years ago
- Proof of concept open source implementation of an UAC bypass exploit, based in 2 windows failures.☆12Updated 4 years ago
- The Grum Spam Bot☆20Updated 9 years ago
- ☆27Updated 9 years ago
- Enter Product Key Volatile Environment LPE☆11Updated 2 years ago
- A packed & protected Module Loader and more, for 64-bit Windows☆28Updated 3 years ago
- drvtriks kernel driver for Windows 7 SP1 and 8.1 x64, that tricks around in your system.☆31Updated 7 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆52Updated 8 months ago
- Scanning and identifying XOR encrypted PE files in PE resources☆27Updated 10 years ago
- ☆21Updated 3 years ago
- Full reversing of the Microsoft Auxiliary Windows API Library and ported to C☆23Updated last year
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 6 years ago
- A small utility to run raw code chunks in the executable memory area.☆14Updated 9 years ago
- ASUSTeK AsIO3 I/O driver unlock☆19Updated 3 years ago
- find and kill injectedThreads from memory☆10Updated 8 years ago
- Windows NT port of 'Main is usually a function. So then when is it not?'☆24Updated 8 months ago
- Bypass Antivm and Cuckoo Sandbox Techniques☆12Updated 8 years ago
- Simple tool for unpacking packed/protected malware executables.☆32Updated 13 years ago
- ASProtect reverse engineering & analysis WinDbg extension☆20Updated 4 years ago
- User-mode process cross-checking utility intended to detect naive malware hiding itself by hooking IAT/EAT.☆18Updated 8 years ago
- ☆11Updated 2 weeks ago
- A MITM proxy server for reflective DLL injection through WinINet☆15Updated 6 years ago
- A small library helping to parse commandline parameters (for C/C++)☆53Updated last year
- UPDATED 2022 Flame malware sourcecode available !! Forked. I will later provide my sample of Flame, Duqu and Gauss.☆18Updated 8 months ago
- Reflective DLL Injection style process infector☆19Updated 6 years ago
- Common Malware Techniques☆13Updated last year
- Static library and headers for linking your software with ntdll.dll☆30Updated 4 years ago
- Hidden kernel mode code execution for bypassing modern anti-rootkits.☆80Updated 13 years ago
- Class implementation of PowerLoader injection technique☆29Updated 7 years ago