ntoskrnl's repos on GitHub
1 人关注
antispy
AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and restore various kernel modifications and hooks.With its assistance,you can easily spot and neutralize malwares hidden from normal detectors.
C++ · 1 人关注
findpg
Windbg extension to find PatchGuard pages
Pascal · 1 人关注
IRPMon
The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracker but has several enhancements. It supports 64-bit versions of Windows (no inline hooks are used, only moodifications to driver object structures are performed) and monitors IRP, FastIo, AddDevice, DriverUnload and StartIo requests.
1 人关注
miwifi
Kernel, Toolchain ... of Xiaomi Router R1D
Python · 1 人关注
mona
Corelan Repository for mona.py
Python · 1 人关注
PyAna
PyAna - Analyzing the Windows shellcode
Python · 1 人关注
PythonForWindows
A codebase aimed to make interaction with Windows and native execution easier
C++ · 1 人关注
SwishDbgExt
Incident Response & Digital Forensics Debugging Extension
Python · 1 人关注
unitracer
Windows API tracer for malware
C · 1 人关注
UPGDSED
Universal PatchGuard and Driver Signature Enforcement Disable
C · 1 人关注
vmdetector
Automatically exported from code.google.com/p/vmdetector
C · 1 人关注
vmdetectorsys
Automatically exported from code.google.com/p/vmdetectorsys
C++ · 1 人关注
wdbgark
WinDBG Anti-RootKit Extension
Python · 1 人关注
windows_syscalls_dumper
A dirty IDAPython script to dump windows system call number/name pairs as JSON
C · 1 人关注
WinObjEx64
Windows Object Explorer 64-bit
Python · 1 人关注
Winpayloads
Undetectable Windows Payload Generation
1 人关注
xsock
xsock is tcp data transfer tool, modify from https://github.com/Lykan-sec/LCX