q53c's starred repositories
RealBlindingEDR
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
SWH-Injector
An Injector that can inject dll into game process protected by anti cheat using SetWindowsHookEx.
WindowProtect
Etw hook 查找窗口相关内核函数 实现窗口保护 适用于Win10
fumo_loader
Fumo Loader - All in one kernel-based DLL injector
PointerSearcher-X
An application for finding memory pointers.
MemoryModulePP
MemoryModule which compatible with Win32 API and support exception handling
CallStack-Spoofer
This tool will allow you to spoof the return addresses of your functions as well as system functions.
Syscall-Monitor
Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+
systeminformer
A free, powerful, multi-purpose tool that helps you monitor system resources, debug software and detect malware. Brought to you by Winsider Seminars & Solutions, Inc. @ http://www.windows-internals.com
stunning-signature
Native Signature Verification For Android (with example)
EtwExplorer
View ETW Provider manifest