基于ObRegisterCallbacks实现简单进程保护功能
☆29Jun 23, 2022Updated 3 years ago
Alternatives and similar repositories for ProcessProtect
Users that are interested in ProcessProtect are comparing it to the libraries listed below
Sorting:
- 扫描以及恢复 r3hook 类☆10Aug 29, 2021Updated 4 years ago
- Kernel-Mode driver and User-Mode application communication project☆12Jun 24, 2018Updated 7 years ago
- ☆11Oct 17, 2020Updated 5 years ago
- ☆12Jul 13, 2022Updated 3 years ago
- x64 Windows privilege elevation using anycall☆22May 28, 2021Updated 4 years ago
- WoW64 -> x64☆18Oct 1, 2016Updated 9 years ago
- Windows register editor for C++☆17Jul 2, 2019Updated 6 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆44Apr 1, 2023Updated 2 years ago
- Collection of shellcode injection and execution techniques☆18Aug 21, 2025Updated 6 months ago
- ☆36Mar 27, 2022Updated 3 years ago
- D☆44May 3, 2021Updated 4 years ago
- Rootkit loader for your rootkit dll, x86/x64 system wide DLL injection (+appinit_dlls registry create) uses heavens gate☆22Jan 28, 2021Updated 5 years ago
- Driver protect 驱动保护☆46Apr 23, 2020Updated 5 years ago
- ☆16Mar 1, 2019Updated 7 years ago
- 我的开源:讲解anything☆20Nov 7, 2020Updated 5 years ago
- libcodecs is part of the "Huorong eXtendible Stream Scan Engine" project copyright by Huorong Borui (Beijing) Technology Co., Ltd.☆24Aug 17, 2015Updated 10 years ago
- Mono process injector☆22Jan 26, 2019Updated 7 years ago
- Players' Unknown Battleground Vulnerabilities Test PoC☆18Apr 15, 2019Updated 6 years ago
- 学习windows驱动相关☆23Jul 31, 2019Updated 6 years ago
- Allows you to find the use of ScyllaHide, if your program will debug and restore hooking functions bytes.☆27Aug 3, 2019Updated 6 years ago
- BypaPH - Process Hacker's bypass (read/write any process virtual memory & kernel mem) 带签名驱动,驱动级内存读取☆23Sep 3, 2020Updated 5 years ago
- A ProcMon-esque tool for monitoring Windows Kernel Drivers☆63May 31, 2021Updated 4 years ago
- manual mapping injector☆29Sep 28, 2025Updated 5 months ago
- A resource for thread hijacking and manual mapping code, that works with MEM_MAPPED & MEM_IMAGE.☆26Apr 17, 2021Updated 4 years ago
- A library with four different methods to execute shellcode in a process☆26Mar 24, 2020Updated 5 years ago
- Demo List cm/ps/ob/minifilter callback And Patch/Bypass it☆29Dec 5, 2017Updated 8 years ago
- Signature scanner and API hooks to detect malicious process injection☆29Mar 11, 2023Updated 2 years ago
- ☆25Mar 3, 2019Updated 7 years ago
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆32May 18, 2022Updated 3 years ago
- NtCreateUserProcess with CsrClientCallServer for mainstream Windows x64 version☆44Jul 16, 2024Updated last year
- Coil On Plug Project made with Arduino Nano V3 for Honda/Acura☆14Feb 6, 2023Updated 3 years ago
- Kernel mode to user mode dll injection.☆14Nov 10, 2024Updated last year
- PsSetCreateProcessNotifyRoutine bypass proof-of-concept for manual mapped drivers☆34Jul 19, 2021Updated 4 years ago
- 提取英雄联盟语音文件☆30Updated this week
- DBKKernel used by Cheat Engine. Specially revised for VS2017 win10.☆34Jan 8, 2018Updated 8 years ago
- Fabreeko Salad Fork 160 kit☆14Jan 17, 2023Updated 3 years ago
- 在Windows上建立一个开源的强制访问控制框架及SDK。使Windows平台的应用开发者,可以不用关心操作系统底层技术,只用进行简单的SDK调用或配置就可以保护自己的应用程序。☆34Jul 5, 2016Updated 9 years ago
- Hijack NotifyRoutine for a kernelmode thread☆41Jun 4, 2022Updated 3 years ago
- Fingerprint Attendance System