the basic version of the ring0 physical memory read/write tool
☆92Aug 18, 2019Updated 6 years ago
Alternatives and similar repositories for PhysicalMemoryRW
Users that are interested in PhysicalMemoryRW are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Hide codes/data in the kernel address space.☆188May 8, 2021Updated 4 years ago
- by others☆40Jan 28, 2018Updated 8 years ago
- ☆39Oct 29, 2020Updated 5 years ago
- ☆125May 23, 2020Updated 5 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆107May 10, 2022Updated 3 years ago
- ☆36Oct 29, 2020Updated 5 years ago
- win10 pgContext dynamic dump (btc version)☆110Jan 15, 2020Updated 6 years ago
- ayy debuger☆90Mar 3, 2024Updated 2 years ago
- Some garbage drivers written for getting started☆65Dec 31, 2019Updated 6 years ago
- Kernel DLL Injector using NX Bit Swapping and VAD hide for hiding injected DLL☆219Nov 12, 2020Updated 5 years ago
- Stealthy Injector that leverages a vulnerable driver and other exploits to remain undetected☆37Dec 10, 2018Updated 7 years ago
- ☆99Oct 6, 2017Updated 8 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆109Apr 24, 2020Updated 5 years ago
- 使用vt进行无痕hook,支持r3☆63Feb 1, 2019Updated 7 years ago
- Analyze Windows x64 Kernel Memory Layout☆130Nov 19, 2020Updated 5 years ago
- ☆116Oct 1, 2019Updated 6 years ago
- A reflexive driver loader to bypass Windows DSE (featuring a custom PE loader)☆44Sep 1, 2018Updated 7 years ago
- pdb's function and global vars to offset☆10Apr 11, 2023Updated 2 years ago
- This project has been moved from a private repository.☆11May 4, 2018Updated 7 years ago
- Kernel driver that uses Shared memory to communicate with UserMode☆86Apr 25, 2019Updated 6 years ago
- a more stable & secure read/write virtual memory for kernel mode drivers☆161Mar 8, 2020Updated 6 years ago
- bypass CRC☆12May 3, 2018Updated 7 years ago
- PoC of BOOST-ed _EPROCESS.VadRoot iterating☆27May 21, 2014Updated 11 years ago
- Hooking kernel functions by abusing alignment☆249Jan 5, 2021Updated 5 years ago
- x64 free protect Features 1.process/thread handle protect 2.anti taskmgr.exe 3.hide process 4.anti-debugger(user/kernel debugger)☆87Apr 3, 2019Updated 6 years ago
- An Ark tool project,run on Win7 x86/x64☆118Jul 11, 2017Updated 8 years ago
- WoW64 -> x64☆18Oct 1, 2016Updated 9 years ago
- VT-based PCI device monitor (SPI)☆158Oct 29, 2020Updated 5 years ago
- Windows Kernel Template Library☆114Sep 13, 2022Updated 3 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆346Apr 27, 2020Updated 5 years ago
- Process path modification x64☆60Jul 18, 2018Updated 7 years ago
- x64 assembler library☆31Jun 7, 2024Updated last year
- Detects if a Kernel mode debugger is active by reading the value of KUSER_SHARED_DATA.KdDebuggerEnabled. It is a high level and portable …☆23Sep 18, 2017Updated 8 years ago
- ☆17Apr 21, 2022Updated 3 years ago
- ☆24Mar 4, 2019Updated 7 years ago
- Kernel Inject Process☆11Jul 28, 2017Updated 8 years ago
- All Nt Syscall and W32k Syscall in one asm, include, and call it!☆58Nov 4, 2021Updated 4 years ago
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆290Jan 27, 2025Updated last year
- ☆14Dec 3, 2022Updated 3 years ago