zodiacon / DepWalk
☆37Updated last year
Alternatives and similar repositories for DepWalk:
Users that are interested in DepWalk are comparing it to the libraries listed below
- Debug Print viewer (user and kernel)☆65Updated last year
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- Static library and headers for linking your software with ntdll.dll☆32Updated 5 years ago
- A class to gather information about a process, its threads and modules.☆24Updated 4 years ago
- Just an example of a well-known technique to detect memory tampering via Windows Working Sets.☆16Updated 3 years ago
- Remote memory library in C++17.☆31Updated 6 years ago
- Detects if a Kernel mode debugger is active by reading the value of KUSER_SHARED_DATA.KdDebuggerEnabled. It is a high level and portable …☆23Updated 7 years ago
- ☆24Updated 6 years ago
- x64 assembler library☆31Updated 9 months ago
- 🧶 The Win32 usermode threading library with UMS/fibers/threads support☆30Updated 5 years ago
- A library with four different methods to execute shellcode in a process☆24Updated 4 years ago
- INF Studio for easier working with driver installation files☆36Updated last year
- NT reversal☆25Updated 6 years ago
- ☆31Updated 4 years ago
- Small memory leak PoC that is happening in IopGetDeviceInterfaces☆25Updated 4 years ago
- Signature scanner and API hooks to detect malicious process injection☆26Updated 2 years ago
- Figuring out the cause of a handle downgrade☆24Updated 2 years ago
- An example code of CiGetCertPublisherName☆14Updated 2 years ago
- Simplifies the Windows Kernel APIs by making the existing function easier to use, and extends them by creating functions that could possi…☆26Updated 6 months ago
- Driver Loader/BE Bypass/Win Malware(lol)☆34Updated 5 years ago
- A slightly safer io access library☆13Updated 3 years ago
- Windows driver template, using C++20 & cmake & GithubActions☆20Updated 7 months ago
- Sample for Creating a new kernel object type and supporting API☆23Updated 6 months ago
- A packed & protected Module Loader and more, for 64-bit Windows☆28Updated 4 years ago
- Windows Console Monitor☆33Updated 5 years ago
- A simple kernel mode driver that hooks some values at the KUSER_SHARED_DATA structure.☆26Updated 5 years ago
- Simple library to handle PE files loading, relocating, get/set data, ..., in addition to process handling☆32Updated 5 years ago
- ☆48Updated 6 years ago
- ☆45Updated 3 months ago
- R3劫持所有异常☆15Updated 4 years ago