zodiacon / sysrunLinks
Run any executable as SYSTEM account (no service required)
☆139Updated last year
Alternatives and similar repositories for sysrun
Users that are interested in sysrun are comparing it to the libraries listed below
Sorting:
- Authenticode Hash Calculator for PE32/PE32+ files☆119Updated 5 months ago
- API Set Viewer☆90Updated 10 months ago
- Explore Job Objects on a Windows system☆82Updated 6 years ago
- File system minifilter driver for Windows to block symbolic link attacks.☆52Updated 4 years ago
- C++ library for low-level Windows development☆81Updated last year
- Kernel Pool Monitor☆127Updated 3 years ago
- Log ALPC activity☆84Updated 2 years ago
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆89Updated 10 years ago
- Run executables in an AppContainer☆122Updated 6 years ago
- Demo service that runs in svchost.exe☆79Updated 7 years ago
- Collection of DLL function export forwards for DLL export function proxying☆107Updated 3 months ago
- Trace events in real time sessions☆45Updated 2 years ago
- Execute commands as local system.☆61Updated 6 years ago
- Reflective PE loader for DLL injection☆184Updated 8 years ago
- View handles and object for each object type☆64Updated 6 years ago
- Shellcode to load an appended Dll☆91Updated 5 years ago
- c++ implementation of windows heavens gate☆70Updated 4 years ago
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆148Updated 6 years ago
- Inject unsigned DLL into Protected Process Light (PPL)☆29Updated 6 months ago
- Explore Kernel Objects on Windows☆239Updated 8 months ago
- (This is a fork used primarily to submit patches into upstream repository) RpcView is a free tool to explore and decompile Microsoft RPC …☆19Updated 2 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆110Updated 5 years ago
- A WinDbg extension to trace COM interactions☆122Updated 3 months ago
- A mini filter driver development framework allows you to develop minit filter driver with different features.☆65Updated last month
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆146Updated 6 years ago
- Miscellaneous Code and Docs☆84Updated 4 months ago
- This is a sample that shows how to leverage SetThreadContext for DLL injection☆84Updated 8 years ago
- A global injection and hooking example☆164Updated 2 years ago
- A PoC designed to bypass all usermode hooks in a WoW64 environment.☆150Updated 5 years ago
- Weaponizing Gigabyte driver for priv escalation and bypass PPL☆69Updated 6 years ago