This is your work, valued

rbmm

Expert
@rbmm

SC_DEMO. C

128

NtDetours. Detours implementation (x64/x86) which used only ntdll import

93

LdrpKernel32DllName. C

91

SC. shell code example

69

INJECT. D

43

RtlClone. C

43

Hollowed-Process. Assembly

29

ARL. C++

24

TPM. Easy encrypt/decrypt data with TPM

24

ShadowAdmin. C

22

SDD. Self Delete DLL

22

TL-TASK. C

19

Services. C++

18

partial. d

14

SDD2. Self delete DLL (2)

14

DisableSvc. C++

13

asterisk.

13

DirectSysCall. C++

12

Noname. really ?

12

remap. break link between dll and it file on disk

12

MISC. Assembly

11

PPL. run process as PPL Antimalware

10

PfxViewer. C++

10

Load.

10

GetPdb. C++

10

LIB. C

10

pdbutil. C++

9

KPDB. C++

9

TBAL. C++

8

SearchEx. D00

7

CrackMe. d00

7

run-as-pro. C++

6

IConnectedUser. C++

6

ExportPolicy. Export not exported private key

6

NtRegView. C++

6

MutationGate. C++

6

KnownDlls. re-implementation

5

CriticalSectionTimeout. C

5

SRW_ALT. C++

5

CTF. Capture the Flag

5

dddi. C++

4

LongPath. C++

4

Proxy. C++

4

RDM. Module load event for unknown process

4

Handles. C++

4

TOTP. TOTP Authenticator for windows desktop

3

AsyncDelete. C++

3

EMITVOLATILEMETADATA. C

3

SRW-2. shared to exclusive

3

FwReady. WNF_WFAS_FIREWALL_NETWORK_CHANGE_READY

3

LdrpDebugFlags. C++

3

TVI. C++

3

LockFile-Poc. D

3

uac-2. C

2

WdfFunctions. C

1

MachineToken. C++

1

RbCopy. C

1

VSC.

1

KEYBOARD_LL. C

1