trueroad / extract-authenticode
Extract Authenticode signature data from PE format file
☆14Updated 4 years ago
Related projects: ⓘ
- ☆32Updated 3 years ago
- just an lite AntiRootkit for interesting☆23Updated 8 years ago
- ☆20Updated this week
- x64 Kernel Hooks Detection☆24Updated 7 years ago
- ☆27Updated 3 years ago
- User-mode program parsing logs created by HyperPlatform☆18Updated 8 years ago
- Open Source Libraries Collection☆24Updated 8 years ago
- ☆17Updated 7 years ago
- Wow64 syscall hook☆39Updated 7 years ago
- copy of tdifw lib☆10Updated 7 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆27Updated 6 years ago
- windows kernel File redirection☆18Updated 9 years ago
- Map memory to user space and manipulate user memory, using capmon☆23Updated 5 years ago
- ☆23Updated this week
- A drop-in replacement for the C++ STL for kernel mode Windows drivers. The goal is to have implementations for things like the standard a…☆30Updated 8 years ago
- Shareds for kernel developement☆27Updated 10 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆24Updated 10 years ago
- ☆31Updated this week
- use crystalCPUID to identify vt-x & amd-v☆16Updated 9 years ago
- ☆13Updated 6 years ago
- Windows Server 2K3 NT 5☆12Updated 3 years ago
- 🧶 The Win32 usermode threading library with UMS/fibers/threads support☆29Updated 5 years ago
- a network filter using NDIS hook technique☆18Updated 11 years ago
- init☆13Updated 4 years ago
- Windows Console Monitor☆32Updated 5 years ago
- a sandbox project by sudami☆16Updated 6 years ago
- ☆13Updated this week
- Undocumented NsiAllocateAndGetTable usage in GetTcpTableInternal reverse engineered on Win7 X64☆18Updated 6 years ago
- UI application that can compare PE images in memory or in raw PE file☆17Updated 10 years ago