VT Hook
☆51Jul 2, 2024Updated last year
Alternatives and similar repositories for kHypervisorBasic
Users that are interested in kHypervisorBasic are comparing it to the libraries listed below
Sorting:
- A C++ syscall ID extractor for Windows. Developed, debugged and tested on 20H2.☆21May 25, 2021Updated 4 years ago
- 基于Intel-VT技术的windows内核增强型驱动☆30Jun 9, 2022Updated 3 years ago
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆98Mar 30, 2023Updated 2 years ago
- 之前学习X64VT写的代码,很多坑,但是大体的逻辑还是完整的。现发出来给更多想学VT的人参考...☆71Apr 26, 2021Updated 4 years ago
- 不使用3环挂钩进行DWM桌面绘制☆82Dec 9, 2021Updated 4 years ago
- Windows kernel drivers simple HTTP library for modern C++☆40Jul 12, 2018Updated 7 years ago
- 使用vt进行无痕hook,支持r3☆61Feb 1, 2019Updated 7 years ago
- Windows Server 2K3 NT 5☆12Apr 14, 2021Updated 4 years ago
- Windows Server 2K3 NT 5☆12Apr 17, 2021Updated 4 years ago
- Hook NtDeviceIoControlFile with PatchGuard☆107May 10, 2022Updated 3 years ago
- Intel-VT-x/Hook Msr Build and Replace System Server Description Table.☆17Mar 14, 2025Updated 11 months ago
- Static user/kernel mode library that allows access to all functions and global variables by extracting offsets from the PDB☆118May 29, 2025Updated 9 months ago
- clearing traces of a loaded driver☆47Jul 2, 2022Updated 3 years ago
- A ProcMon-esque tool for monitoring Windows Kernel Drivers☆62May 31, 2021Updated 4 years ago
- 对debughelp的二次开发☆11Feb 20, 2023Updated 3 years ago
- Inject dll to process in driver☆10Aug 27, 2024Updated last year
- A native hypervisor designed for the Windows operating system☆125Mar 6, 2021Updated 4 years ago
- Hide Process☆71Jul 18, 2024Updated last year
- VEH debug plugin☆13Apr 28, 2022Updated 3 years ago
- Hide codes/data in the kernel address space.☆188May 8, 2021Updated 4 years ago
- This project can bypass most of the AC except for some perverts that enable VT to monitor page tables☆55May 16, 2024Updated last year
- Kernel DLL Injector using NX Bit Swapping and VAD hide for hiding injected DLL☆219Nov 12, 2020Updated 5 years ago
- ☆99Oct 6, 2017Updated 8 years ago
- a simple intel vt code both support x86 & x64. PatchGuard monitor.☆77Oct 28, 2021Updated 4 years ago
- Page fault hook use ept (Intel Virtualization Technology)☆200Oct 19, 2016Updated 9 years ago
- EtwHook for win7-win11;☆23Sep 13, 2022Updated 3 years ago
- Custom KiSystemStartup, can be used to modificate kernel before boot.☆53Apr 7, 2022Updated 3 years ago
- Sandboxie应用层Hook框架方案☆22Jan 26, 2025Updated last year
- Some drivers I've written while solving exercises from Practical Reverse Engineering☆15Jan 9, 2022Updated 4 years ago
- neat way to detect memory read using nt layer function.☆14Aug 4, 2023Updated 2 years ago
- 轻量级VT框架和Ept无痕HOOK,测试环境:WIN10 1903,WIN7☆178Oct 28, 2022Updated 3 years ago
- Kernel Anit Anit Debug Plugins 内核反反调试插件☆479Aug 31, 2021Updated 4 years ago
- InfinityHookPro Win7 -> Win11 latest☆551Feb 7, 2023Updated 3 years ago
- IO隐藏通信封装☆17May 31, 2021Updated 4 years ago
- Yet another windows syscall library☆18Jun 22, 2020Updated 5 years ago
- The windows kernel debugger consists of two parts, KMOD which is the kernel driver handling ring3 request and KCLI, the command line inte…☆99Sep 12, 2022Updated 3 years ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆23Nov 22, 2021Updated 4 years ago
- Simple Intel VT-x hypervisor☆360Dec 10, 2023Updated 2 years ago
- Hades HIDS/HIPS for Windows☆307Oct 10, 2025Updated 4 months ago