VT Hook
☆51Jul 2, 2024Updated last year
Alternatives and similar repositories for kHypervisorBasic
Users that are interested in kHypervisorBasic are comparing it to the libraries listed below
Sorting:
- Sandboxie应用层Hook框架方案☆22Jan 26, 2025Updated last year
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆98Mar 30, 2023Updated 2 years ago
- Windows Server 2K3 NT 5☆12Apr 17, 2021Updated 4 years ago
- 之前学习X64VT写的代码,很多坑,但是大体的逻辑还是完整的。现发出来给更多想学VT的人参考...☆72Apr 26, 2021Updated 4 years ago
- 不使用3环挂钩进行DWM桌面绘制☆83Dec 9, 2021Updated 4 years ago
- 基于Unicorn仿真PE模拟☆31Apr 22, 2022Updated 3 years ago
- 基于行为特征进行快速匹配病毒专杀工具,辅助应急响应☆37May 20, 2020Updated 5 years ago
- Windows kernel drivers simple HTTP library for modern C++☆40Jul 12, 2018Updated 7 years ago
- 基于Intel-VT技术的windows内核增强型驱动☆30Jun 9, 2022Updated 3 years ago
- 安全卫士r3工具集☆37Dec 4, 2019Updated 6 years ago
- 使用vt进行无痕hook,支持r3☆61Feb 1, 2019Updated 7 years ago
- Windows Server 2K3 NT 5☆12Apr 14, 2021Updated 4 years ago
- A C++ syscall ID extractor for Windows. Developed, debugged and tested on 20H2.☆21May 25, 2021Updated 4 years ago
- Windows CVE主防(HIPS/HIDS)☆58Apr 29, 2021Updated 4 years ago
- Intel-VT-x/Hook Msr Build and Replace System Server Description Table.☆17Mar 14, 2025Updated last year
- Hades HIDS/HIPS for Windows☆309Oct 10, 2025Updated 5 months ago
- A native hypervisor designed for the Windows operating system☆125Mar 6, 2021Updated 5 years ago
- ☆19Jun 20, 2019Updated 6 years ago
- This project can bypass most of the AC except for some perverts that enable VT to monitor page tables☆55May 16, 2024Updated last year
- Static user/kernel mode library that allows access to all functions and global variables by extracting offsets from the PDB☆118May 29, 2025Updated 9 months ago
- Hook NtDeviceIoControlFile with PatchGuard☆107May 10, 2022Updated 3 years ago
- ☆125May 23, 2020Updated 5 years ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆23Nov 22, 2021Updated 4 years ago
- a simple intel vt code both support x86 & x64. PatchGuard monitor.☆77Oct 28, 2021Updated 4 years ago
- Some drivers I've written while solving exercises from Practical Reverse Engineering☆15Jan 9, 2022Updated 4 years ago
- Inject dll to process in driver☆10Aug 27, 2024Updated last year
- VEH debug plugin☆13Apr 28, 2022Updated 3 years ago
- Hide Process☆71Jul 18, 2024Updated last year
- 轻量级VT框架和Ept无痕HOOK,测试环境:WIN10 1903,WIN7☆178Oct 28, 2022Updated 3 years ago
- InfinityHookPro Win7 -> Win11 latest☆553Feb 7, 2023Updated 3 years ago
- Kernel Anit Anit Debug Plugins 内核反反 调试插件☆480Aug 31, 2021Updated 4 years ago
- Hide codes/data in the kernel address space.☆188May 8, 2021Updated 4 years ago
- Kernel DLL Injector using NX Bit Swapping and VAD hide for hiding injected DLL☆220Nov 12, 2020Updated 5 years ago
- A ProcMon-esque tool for monitoring Windows Kernel Drivers☆63May 31, 2021Updated 4 years ago
- clearing traces of a loaded driver☆47Jul 2, 2022Updated 3 years ago
- Using the peculiar behaviour of the VPGATHER instructions to determine if an address will fault before it is truly accessed. All done in …☆55Dec 30, 2025Updated 2 months ago
- IO隐藏通信封装☆17May 31, 2021Updated 4 years ago
- Page fault hook use ept (Intel Virtualization Technology)☆200Oct 19, 2016Updated 9 years ago
- Yet another windows syscall library☆18Jun 22, 2020Updated 5 years ago