momo5502
|
29052af829
|
Fix RtlPcToFileHeader calls
|
2024-12-31 08:32:09 +01:00 |
|
momo5502
|
794a9f5c5a
|
Support more directory enumeration classes
|
2024-12-26 10:43:17 +01:00 |
|
momo5502
|
724446620c
|
Small fixes
|
2024-12-26 09:37:10 +01:00 |
|
momo5502
|
cb88ebe480
|
Fix warning
|
2024-12-25 15:32:21 +01:00 |
|
momo5502
|
df812fd24d
|
Fix offsets
|
2024-12-25 15:06:07 +01:00 |
|
momo5502
|
68d5a0532f
|
Check if logger output is disabled
|
2024-12-25 14:58:15 +01:00 |
|
momo5502
|
5b5db03521
|
Accurate file enumeration
|
2024-12-25 14:44:13 +01:00 |
|
momo5502
|
62de7c0564
|
Add token handler
|
2024-12-25 14:44:05 +01:00 |
|
momo5502
|
b5ca800e7d
|
Disable broken code
|
2024-12-25 14:43:54 +01:00 |
|
momo5502
|
fcf8fc001e
|
Add new syscall
|
2024-12-25 14:43:40 +01:00 |
|
momo5502
|
6f8f870103
|
Directory enumertion
|
2024-12-25 12:41:43 +01:00 |
|
momo5502
|
405d5e349d
|
Add dummy syscall
|
2024-12-24 10:15:43 +01:00 |
|
momo5502
|
4766e164e0
|
Move emulator settings
|
2024-12-24 09:26:19 +01:00 |
|
momo5502
|
6111f2fad3
|
Fix silencing
|
2024-12-24 09:23:38 +01:00 |
|
momo5502
|
98265ce2a9
|
Support silencing the logging until the main function gets executed
|
2024-12-24 09:14:35 +01:00 |
|
momo5502
|
4deb007a8e
|
Remove outdated comment
|
2024-12-24 09:13:55 +01:00 |
|
momo5502
|
7701526d3f
|
Support implicit memory reserving
|
2024-12-24 07:57:23 +01:00 |
|
momo5502
|
e40a6d1c51
|
Fix path canonicalization
This fixes #34
|
2024-12-24 07:14:24 +01:00 |
|
momo5502
|
56af439dcd
|
Watch interesting system objects
|
2024-12-23 11:15:53 +01:00 |
|
momo5502
|
86c7886b62
|
Fix allocations
|
2024-12-23 10:54:15 +01:00 |
|
momo5502
|
420a200ef4
|
More dummy devices
|
2024-12-23 10:51:49 +01:00 |
|
momo5502
|
a38b9240a9
|
Add more syscalls
|
2024-12-23 10:22:33 +01:00 |
|
momo5502
|
ed0ced76f9
|
Progress on tokens
|
2024-12-22 21:47:43 +01:00 |
|
momo5502
|
727d818c10
|
Fix TLS operations
|
2024-12-22 17:37:28 +01:00 |
|
momo5502
|
4de6813c09
|
Support DLL unmapping
|
2024-12-22 16:45:31 +01:00 |
|
momo5502
|
b4e7606226
|
Better NtClose
|
2024-12-22 16:34:28 +01:00 |
|
momo5502
|
5122b55661
|
Support recursive mutants
|
2024-12-22 16:34:28 +01:00 |
|
momo5502
|
4be39b1fe7
|
Prepare mutant support
|
2024-12-22 16:34:28 +01:00 |
|
momo5502
|
48277cac3a
|
More token support
|
2024-12-22 10:28:44 +01:00 |
|
momo5502
|
2695fa0cd8
|
Prepare mutex support
|
2024-12-22 09:32:11 +01:00 |
|
momo5502
|
1023281425
|
Add basic token support
|
2024-12-22 08:47:14 +01:00 |
|
momo5502
|
f8e6d84460
|
Fix TLS
|
2024-12-21 21:11:30 +01:00 |
|
momo5502
|
61d9979811
|
Print handle types
|
2024-12-21 21:11:18 +01:00 |
|
momo5502
|
ce6cb0116b
|
Support more syscalls
|
2024-12-21 20:18:59 +01:00 |
|
momo5502
|
98d3077d35
|
Properly map dlls via sections
This fixes #31
|
2024-12-21 11:38:38 +01:00 |
|
momo5502
|
f2c69b7f3a
|
Fix include
|
2024-12-21 11:33:17 +01:00 |
|
momo5502
|
50af68ed8f
|
Support image check
|
2024-12-21 11:32:35 +01:00 |
|
momo5502
|
e9bd94d6d8
|
Map synchronization access to read
|
2024-12-21 11:31:54 +01:00 |
|
momo5502
|
7633a4bbab
|
Introduce string utils
|
2024-12-21 11:31:32 +01:00 |
|
momo5502
|
de8b85a3f9
|
Implement NtQueryAttributesFile syscall
|
2024-12-21 09:55:38 +01:00 |
|
momo5502
|
2d892217d4
|
Add token classes
|
2024-12-14 08:32:37 +01:00 |
|
momo5502
|
719a50444e
|
Prepare better section support
|
2024-12-13 21:29:51 +01:00 |
|
Maurice Heumann
|
d83f2c61e8
|
Update memory_utils.hpp
|
2024-12-06 06:57:39 +01:00 |
|
momo5502
|
ee0e2676f1
|
Add system time test
|
2024-11-24 11:27:10 +01:00 |
|
momo5502
|
5f49b30fe0
|
Cleanup KUSD MMIO
|
2024-11-24 10:37:26 +01:00 |
|
momo5502
|
d3cf88a0c4
|
Dynamically update KUSD system time
|
2024-11-23 22:19:05 +01:00 |
|
momo5502
|
2e2b4ffb2f
|
KUSD MMIO
|
2024-11-23 19:32:14 +01:00 |
|
momo5502
|
325e8115af
|
Replace constructor function with actual constructor call
|
2024-11-23 19:26:40 +01:00 |
|
momo5502
|
84a0aed1d9
|
Small fixes and additions
|
2024-11-23 16:44:49 +01:00 |
|
momo5502
|
804f517e68
|
Fix tests and compilation
|
2024-11-17 09:43:02 +01:00 |
|