Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module
-
Updated
Sep 9, 2018 - C
Kernel-Mode Driver that loads a dll into every new created process that loads kernel32.dll module
WKTools Is a Power Windows Kernel Tools
Windows Kernel Programming
Anti-Ransomware Detection Tool
Practical Reverse Engineering Exercises
All undocumented ntoskrnl structs crawled from vergiliusproject.com
The project demonstrates a simple detection method for SSDT Hook in User Mode via BYOVD
Add a description, image, and links to the windowskernel topic page so that developers can more easily learn about it.
To associate your repository with the windowskernel topic, visit your repo's landing page and select "manage topics."