zodiacon / DllInjectionWithThreadContextLinks
This is a sample that shows how to leverage SetThreadContext for DLL injection
☆84Updated 8 years ago
Alternatives and similar repositories for DllInjectionWithThreadContext
Users that are interested in DllInjectionWithThreadContext are comparing it to the libraries listed below
Sorting:
- PoC for detecting and dumping code injection (built and extended on UnRunPE)☆57Updated 6 years ago
- Analyze and attack windows applications using dll hijacking vulnerabilities☆58Updated 5 years ago
- C++☆79Updated 9 years ago
- An Attempt to Bypass Memory Scanners By Misusing the ntdll.dll "RT" Section.☆97Updated 9 years ago
- Simple proof of concept code for injecting libraries on 64bit processes from a 32bit process☆96Updated 6 years ago
- PE(compressed dll) memory loader using nt api☆45Updated 8 years ago
- Standalone program to download PDB Symbol files for debugging without WDK☆79Updated 6 years ago
- kernel-mode TDI client which can send and receive HTTP requests☆55Updated 7 years ago
- 内核级ARK工具。☆59Updated 9 years ago
- WinDbg debugger extension library providing various tools to analyse, dump and fix (restore) Microsoft Portable Executable files for both…☆84Updated last year
- A minifilter driver preserves all modified and deleted files.☆80Updated 10 years ago
- ☆36Updated 8 years ago
- win10 pgContext dynamic dump (btc version)☆107Updated 5 years ago
- Anti-Anti-VM solution via Windows Driver☆59Updated 7 years ago
- Protects deletion of files with a specified extension using a kernel-mode driver.☆76Updated 7 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆79Updated 14 years ago
- Retrieve pointers to undocumented kernel functions and offsets to members within undocumented structures to use in your driver by using t…☆63Updated 6 years ago
- Code injection by hijacking threads in Windows 32-bit applications☆43Updated 6 years ago
- PoC for detecting and dumping process hollowing code injection☆52Updated 6 years ago
- 一个早期的抗启发式查杀的WIN32免杀壳☆44Updated 12 years ago
- ☆57Updated 11 years ago
- ☆47Updated 8 years ago
- Kinject - kernel dll injector, currently available in x86 version, will be updated to x64 soon.☆32Updated 10 years ago
- An ark tool's driver☆40Updated 8 years ago
- simple PE packer written in C++☆55Updated 7 years ago
- Polymorphic Stub Creator☆34Updated 8 years ago
- Call 32bit NtDLL API directly from WoW64 Layer☆60Updated 4 years ago
- A command line tool to load and unload a device driver.☆47Updated 8 years ago
- GetHooks is a program designed for the passive detection and monitoring of hooks from a limited user account.☆61Updated 4 years ago
- ☆25Updated 6 years ago