zodiacon / sysrun
Run any executable as SYSTEM account (no service required)
☆126Updated 9 months ago
Alternatives and similar repositories for sysrun:
Users that are interested in sysrun are comparing it to the libraries listed below
- Log ALPC activity☆78Updated last year
- Authenticode Hash Calculator for PE32/PE32+ files☆107Updated 11 months ago
- C++ library for low-level Windows development☆72Updated 10 months ago
- Explore Job Objects on a Windows system☆81Updated 5 years ago
- API Set Viewer☆86Updated last month
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆85Updated 9 years ago
- Process Doppelgänging☆156Updated 7 years ago
- Some Code Samples for Windows based Inter-Process-Communication (IPC)☆166Updated 11 months ago
- View handles and object for each object type☆61Updated 5 years ago
- Reflective PE loader for DLL injection☆175Updated 7 years ago
- An command-line RPC method enumerator, born out of RPCView's awesomeness☆101Updated 5 years ago
- An example of a client and server using Windows' ALPC functions to send and receive data.☆94Updated 3 weeks ago
- This is a sample that shows how to leverage SetThreadContext for DLL injection☆81Updated 7 years ago
- Shellcode to load an appended Dll☆88Updated 4 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆139Updated 5 years ago
- Used to create wrappers and proxy libraries for Windows binaries.☆74Updated 13 years ago
- File system minifilter driver for Windows to block symbolic link attacks.☆51Updated 4 years ago
- A PoC designed to bypass all usermode hooks in a WoW64 environment.☆149Updated 4 years ago
- Trace events in real time sessions☆44Updated last year
- This respository is a collection of C# class libraries which implement RPC clients for various versions of the Windows Operating System f…☆267Updated 4 years ago
- PoC designed to evade userland-hooking anti-virus.☆88Updated 5 years ago
- Execute commands as local system.☆63Updated 5 years ago
- Yet another PE Viewer☆138Updated 2 years ago
- ☆90Updated 3 years ago
- Run Processes as PPL with ELAM☆153Updated 2 years ago
- Convert PE files to a shellcode☆74Updated 4 years ago
- ☆190Updated 2 years ago
- PoC for detecting and dumping code injection (built and extended on UnRunPE)☆56Updated 6 years ago
- ☆68Updated 2 weeks ago
- An example of how x64 kernel shellcode can dynamically find and use APIs☆104Updated 4 years ago