Cerbersec / HDE64
Hacker Disassembler Engine 64 Copyright (c) 2008-2009, Vyacheslav Patkov. * All rights reserved.
☆46Updated 3 years ago
Alternatives and similar repositories for HDE64:
Users that are interested in HDE64 are comparing it to the libraries listed below
- A ProcMon-esque tool for monitoring Windows Kernel Drivers☆54Updated 3 years ago
- ☆123Updated 4 years ago
- Tutorial & a blog post that demonstrate how to code a Windows driver to inject a custom DLL into all running processes. I coded it from s…☆129Updated 3 years ago
- based on https://github.com/secrary/Hooking-via-InstrumentationCallback☆68Updated 5 years ago
- ☆127Updated 2 years ago
- ☆65Updated 6 years ago
- Debug Print viewer (user and kernel)☆65Updated 11 months ago
- 让Etwhook再次伟大! Make InfinityHook Great Again!☆128Updated 3 years ago
- This project migrated to https://github.com/backengineering/llvm-msvc☆82Updated last year
- ShotHv☆132Updated 2 years ago
- Kernel-Mode extended version of https://github.com/microsoft/Detours☆152Updated 2 years ago
- Resolve DOS MZ executable symbols at runtime☆96Updated 3 years ago
- Collect various versions of ntoskrnl files☆49Updated last year
- a monitoring windows driver calls kernel api tools☆101Updated 6 months ago
- x64 syscall caller in C++.☆86Updated 6 years ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆107Updated 2 years ago
- D☆40Updated 3 years ago
- Ghetto user mode emulation of Windows kernel drivers.☆133Updated 3 months ago
- ☆68Updated 2 years ago
- An example of a client and server using Windows' ALPC functions to send and receive data.☆90Updated last week
- This project migrated to https://github.com/backengineering/llvm-msvc☆141Updated last year
- ☆53Updated 2 years ago
- Collect different versions of Crucial modules.☆128Updated 6 months ago
- Demystifying PatchGuard is a comprehensive analysis of Microsoft's security feature called PatchGuard, which is designed to prevent unaut…☆114Updated last year
- Use ntdll/ntoskrnl to implement Kernel32, Advapi32 and other APIs. It includes user-mode and kernel-mode.☆72Updated 3 months ago
- Hook NtDeviceIoControlFile with PatchGuard☆103Updated 2 years ago
- Detect-KeAttachProcess by iterating through all processes as well as checking the context of the thread.☆109Updated 2 years ago
- A very simple C++ library for download pdb, get rva of function, global variable and offset from struct.☆127Updated 10 months ago
- This project will give you an example how you can hook a kernel vtable function that cannot be directly called☆83Updated 3 years ago
- Use ci.dll API for validating Authenticode signature of files☆137Updated 2 years ago