Hook NtDeviceIoControlFile with PatchGuard
☆106May 10, 2022Updated 4 years ago
Alternatives and similar repositories for DICHook
Users that are interested in DICHook are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 不使用3环挂钩进行DWM桌面绘制☆82Dec 9, 2021Updated 4 years ago
- Kernel DLL Injector using NX Bit Swapping and VAD hide for hiding injected DLL☆221Nov 12, 2020Updated 5 years ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆108Sep 1, 2022Updated 3 years ago
- Windows X64 mode use seh in manual mapped dll or manual mapped sys☆77Oct 10, 2022Updated 3 years ago
- Code Injection, Inject malicious payload via pagetables pml4.☆244Jul 7, 2021Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆34Apr 11, 2023Updated 3 years ago
- Easy Anti PatchGuard☆221Apr 9, 2021Updated 5 years ago
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆288Apr 30, 2026Updated last month
- the basic version of the ring0 physical memory read/write tool☆93Aug 18, 2019Updated 6 years ago
- Hide codes/data in the kernel address space.☆187May 8, 2021Updated 5 years ago
- This project will give you an example how you can hook a kernel vtable function that cannot be directly called☆83Dec 25, 2021Updated 4 years ago
- ☆143Dec 10, 2022Updated 3 years ago
- Analyze Windows x64 Kernel Memory Layout☆131Nov 19, 2020Updated 5 years ago
- ☆311May 11, 2023Updated 3 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- ☆101Oct 6, 2017Updated 8 years ago
- ☆24Jul 24, 2023Updated 2 years ago
- A very simple C++ library for download pdb, get rva of function, global variable and offset from struct.☆162Mar 26, 2024Updated 2 years ago
- Disable threat tracing from the kernel..☆15Apr 8, 2022Updated 4 years ago
- Easily hook WIN32 x64 functions☆18Feb 19, 2025Updated last year
- A simple example how to decrypt kernel debugger data block☆32Feb 8, 2021Updated 5 years ago
- 巨硬☆17Oct 4, 2023Updated 2 years ago
- Tiny driver patch to allow kernel callbacks to work on Win10 21h1☆34Feb 7, 2022Updated 4 years ago
- InfinityHookPro Win7 -> Win11 latest☆555Feb 7, 2023Updated 3 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- https://key08.com/index.php/2021/10/19/1375.html☆71May 11, 2022Updated 4 years ago
- 从MmPfnData中枚举进程和页目录基址☆215Aug 18, 2023Updated 2 years ago
- ☆194May 1, 2023Updated 3 years ago
- Win7内核私有符号结构转储☆71Sep 3, 2021Updated 4 years ago
- mouseclassservicecallback detection via hook☆54Feb 7, 2022Updated 4 years ago
- Hooking kernel functions by abusing alignment☆250Jan 5, 2021Updated 5 years ago
- Call NtCreateUserProcess directly as normal.☆77May 17, 2022Updated 4 years ago
- POC Hook of nt!HvcallCodeVa☆55May 8, 2023Updated 3 years ago
- ☆35Jun 13, 2020Updated 5 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- x86/x64 dll injector☆31May 17, 2022Updated 4 years ago
- ☆47Nov 26, 2020Updated 5 years ago
- ☆74Aug 31, 2022Updated 3 years ago
- Global DLL injector☆70May 16, 2021Updated 5 years ago
- IO隐藏通信封装☆17May 31, 2021Updated 5 years ago
- Example of reading process memory through kernel special APC☆111Apr 21, 2023Updated 3 years ago
- an encryption library designed for Windows kernel and driver programming☆124Aug 4, 2023Updated 2 years ago