Powerful99 / Windows-Hook-Links
学习Windows系统及其Hook技术中的学习和思考
☆25Updated 4 years ago
Alternatives and similar repositories for Windows-Hook-
Users that are interested in Windows-Hook- are comparing it to the libraries listed below
Sorting:
- It's a kernel-based keylogger for Windows x86/x64.☆142Updated 2 years ago
- Windows驱动编程☆152Updated 6 years ago
- a simple assembly engine which is based on LLVM you don't have to worry about its core because LLVM they do it better.☆46Updated 3 years ago
- GCC生成Shellcode框架☆15Updated 5 months ago
- UNONE and KNONE is a couple of open source base library that makes it easy to develop software on Windows.☆160Updated 2 years ago
- ### A security tool for enterprise terminal management that named Hephaestus☆47Updated last year
- Windows符号服务器镜像节点,用于国内加速☆89Updated 3 years ago
- 内核级别隐藏指定窗口☆316Updated 3 years ago
- dirver loader tool☆19Updated 3 years ago
- ☆36Updated 3 years ago
- Windows内核安全与驱动开发书附赠的光盘源码☆93Updated 7 years ago
- 加载内存当中的DLL文件☆84Updated 7 years ago
- Api Breakpoint GUI plugin for x64dbg☆147Updated 2 years ago
- an encryption library designed for Windows kernel and driver programming☆118Updated 2 years ago
- 参考《Windows内核安全与驱动开发》的透明加密解密Minifilter☆72Updated 3 years ago
- 模仿PCHUNTER的ARK工具☆37Updated 5 years ago
- 快速内存搜索算法,商用级别☆130Updated 6 years ago
- WIN64驱动编程基础教程-源码 作者:胡文亮☆88Updated 7 years ago
- InstDrv v2☆40Updated last year
- ☆19Updated 3 years ago
- 一个简单的加壳工具,用最简单的方式来实现对于 32/64 位的 PE 结构进行加密,建议只用于 EXE 格式,用于“羽夏壳世界”教学使用,使用 GPLv3 协议,其他类型的 PE 结构程序暂时没有测试。☆14Updated 3 years ago
- 一个用来做windows内核hook的框架☆176Updated 4 months ago
- 8种检测虚拟机方法☆103Updated 6 years ago
- 《Windows 内核安全编程技术实践》 系列丛书,探索 Anti RootKit 反内核工具核心原理与技术实现细节。☆69Updated 2 years ago
- Anti_GameAssist:反游戏外挂工具☆88Updated 5 years ago
- PE解析工具☆51Updated 5 years ago
- Using NtCreateFile and NtDeviceIoControlFile to realize the function of winsock(利用NtCreateFile和NtDeviceIoControlFile 实现winsock的功能)☆112Updated 3 years ago
- Driver protect 驱动保护☆46Updated 5 years ago
- 一些使用过期或者注销证书的技术☆274Updated 6 years ago
- A flexible PE loader, loading module in memory. Most of the functions can be inline, compatible for shellcode.☆203Updated 3 months ago