JJJJJJ's repositories

HookMsrBySVM

hook msr by amd svm

Language:C++License:AGPL-3.0Stargazers:118Issues:9Issues:0

SvmNest

a frame of amd-v svm nest

Language:C++License:GPL-3.0Stargazers:52Issues:3Issues:0

hidden

Windows driver with usermode interface which can hide objects of file-system and registry, protect processes and etc

Language:CStargazers:2Issues:1Issues:0

Kernel-Bridge

Windows kernel hacking framework, driver template, hypervisor and API written on C++

Language:C++License:GPL-3.0Stargazers:1Issues:1Issues:0

processhacker

A free, powerful, multi-purpose tool that helps you monitor system resources, debug software and detect malware.

Language:CLicense:NOASSERTIONStargazers:1Issues:1Issues:0

al-khaser

Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.

Language:C++License:GPL-2.0Stargazers:0Issues:1Issues:0

AlleyWind

An advanced Win32-based and open-sourced utility that helps you to manage system's windows

Language:CLicense:MITStargazers:0Issues:0Issues:0

ClangOnWindows

Source code for my blog post:

Language:BatchfileLicense:UnlicenseStargazers:0Issues:1Issues:0

crc

crc16/crc32/crc64

Language:CStargazers:0Issues:1Issues:0

DdiMon

Monitoring and controlling kernel API calls with stealth hook using EPT

Language:C++License:MITStargazers:0Issues:1Issues:0

EfiGuard

Disable PatchGuard and DSE at boot time

Language:CLicense:GPL-3.0Stargazers:0Issues:1Issues:0

file-windows

File and Libmagic build with Visual Studio

Language:CLicense:MITStargazers:0Issues:1Issues:0

haxm

Intel® Hardware Accelerated Execution Manager (Intel® HAXM)

Language:CLicense:BSD-3-ClauseStargazers:0Issues:1Issues:0
Stargazers:0Issues:0Issues:0

kHypervisor

kHypervisor is a lightweight bluepill-like nested VMM for Windows, it provides and emulating a basic function of Intel VT-x

Language:C++Stargazers:0Issues:2Issues:0

mimikatz

A little tool to play with Windows security

Language:CStargazers:0Issues:1Issues:0
Stargazers:0Issues:1Issues:0

Obfuscator-LLVM

Based on LLVM 6.0 with Ollvm & Armariris

Language:C++License:NOASSERTIONStargazers:0Issues:1Issues:0

passthrough-minifilter-driver

Windows mini-filter-driver. Blocks the access to USB drives.

Language:CLicense:GPL-2.0Stargazers:0Issues:1Issues:0

SimpleSvmHook

SimpleSvmHook is a research purpose hypervisor for Windows on AMD processors.

Language:C++License:MITStargazers:0Issues:1Issues:0

Syscall-Monitor

Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+

Language:PHPLicense:MITStargazers:0Issues:1Issues:0

test

test

License:GPL-3.0Stargazers:0Issues:1Issues:0

VirtualKD-Redux

VirtualKD-Redux - A revival and modernization of VirtualKD

Language:C++License:LGPL-2.1Stargazers:0Issues:1Issues:0

vs-obfuscation

LLVM Obfuscator / constexpr / PEB CALL API

Language:C++Stargazers:0Issues:1Issues:0

wmi-static-spoofer

Spoofing the Windows 10 HDD/diskdrive serialnumber from kernel without hooking

Language:CLicense:MITStargazers:0Issues:1Issues:0