zodiacon / sysrunLinks
Run any executable as SYSTEM account (no service required)
☆139Updated last year
Alternatives and similar repositories for sysrun
Users that are interested in sysrun are comparing it to the libraries listed below
Sorting:
- Explore Job Objects on a Windows system☆82Updated 6 years ago
- API Set Viewer☆91Updated 8 months ago
- Authenticode Hash Calculator for PE32/PE32+ files☆114Updated 3 months ago
- Log ALPC activity☆84Updated 2 years ago
- Demo service that runs in svchost.exe☆79Updated 7 years ago
- Kernel Pool Monitor☆127Updated 3 years ago
- C++ library for low-level Windows development☆79Updated last year
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆88Updated 9 years ago
- Trace events in real time sessions☆45Updated 2 years ago
- File system minifilter driver for Windows to block symbolic link attacks.☆52Updated 4 years ago
- Run executables in an AppContainer☆122Updated 6 years ago
- This is a sample that shows how to leverage SetThreadContext for DLL injection☆84Updated 8 years ago
- View handles and object for each object type☆64Updated 6 years ago
- c++ implementation of windows heavens gate☆70Updated 4 years ago
- Execute commands as local system.☆61Updated 6 years ago
- Position-idependent Windows DLL loader based on ReflectiveDLL project.☆100Updated 6 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆143Updated 6 years ago
- A PoC designed to bypass all usermode hooks in a WoW64 environment.☆150Updated 5 years ago
- Miscellaneous Code and Docs☆83Updated 2 months ago
- Standalone program to download PDB Symbol files for debugging without WDK☆78Updated 6 years ago
- Collection of DLL function export forwards for DLL export function proxying☆105Updated last month
- Shellcode to load an appended Dll☆89Updated 4 years ago
- (This is a fork used primarily to submit patches into upstream repository) RpcView is a free tool to explore and decompile Microsoft RPC …☆19Updated 2 years ago
- Reflective PE loader for DLL injection☆180Updated 7 years ago
- ☆57Updated 11 years ago
- An example of how x64 kernel shellcode can dynamically find and use APIs☆107Updated 5 years ago
- This program can retrieve signature information from PE files which signed by one or more certificates on Windows. Supporting multi-signe…☆103Updated 3 years ago
- ☆84Updated 3 years ago
- Process Doppelgänging☆161Updated 7 years ago
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆146Updated 6 years ago