yawenok / SSDT-Hook
The windows kernel ssdt hook demo
☆16Updated 6 years ago
Alternatives and similar repositories for SSDT-Hook:
Users that are interested in SSDT-Hook are comparing it to the libraries listed below
- ☆19Updated 5 years ago
- ☆27Updated 5 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆23Updated 8 years ago
- ☆23Updated 7 years ago
- ☆26Updated 7 years ago
- just an lite AntiRootkit for interesting☆23Updated 9 years ago
- Hook IDT vector 0xb2 to detect SCI in 64bit windows.☆33Updated 2 years ago
- x64 Kernel Hooks Detection☆24Updated 8 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆28Updated 7 years ago
- Windows anti-rootkit library☆38Updated 9 years ago
- Driver Loader/BE Bypass/Win Malware(lol)☆34Updated 5 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆25Updated 10 years ago
- Map memory to user space and manipulate user memory, using capmon☆23Updated 6 years ago
- ☆12Updated 6 months ago
- map driver to memory☆25Updated 6 years ago
- Windows driver with usermode interface which can hide objects of file-system and registry, protect processes and etc☆16Updated 6 years ago
- 粗暴地枚举管理内核的WFP对象。 Manage kernel WFPs in a brutal way.☆26Updated 7 years ago
- Protected Process Light Library☆18Updated 4 years ago
- enable libemu run pe file and add some good modify☆14Updated 5 years ago
- UI application that can compare PE images in memory or in raw PE file☆17Updated 10 years ago
- An ark tool's driver☆40Updated 7 years ago
- A POC for Windows Extension Host hooking☆22Updated 5 years ago
- Data and structures regarding the research done on WdFilter☆12Updated 4 years ago
- exploit termdd.sys(support kb4499175)☆57Updated 5 years ago
- windows inlinehook R3 R0☆11Updated 6 years ago
- 大表哥的Syscall-Monitor☆34Updated 5 years ago
- Kernel-mode file scanner☆18Updated 6 years ago
- windows kernel File redirection☆20Updated 10 years ago
- intel vt-x hypervisor ept☆25Updated 4 years ago
- fork HoShiMin Avanguard☆19Updated 6 years ago