hMihaiDavid / hooks
A DLL that performs IAT hooking
☆26Updated 6 years ago
Related projects ⓘ
Alternatives and complementary repositories for hooks
- This is a simple driver with x64 inline assembly☆52Updated 4 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆52Updated 7 months ago
- A Win32 PE/Executable Crypter that employs on the fly encryption & decryption of memory☆33Updated 10 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆72Updated 13 years ago
- PE Library x86☆20Updated 5 years ago
- Simple PE packer with RtlCompressBuffer☆21Updated 9 years ago
- win32/x64 obfuscate framework☆32Updated 5 years ago
- Retrieve pointers to undocumented kernel functions and offsets to members within undocumented structures to use in your driver by using t…☆53Updated 5 years ago
- An API Monitor based on Instrumentation☆42Updated 6 years ago
- Helper utility for debugging windows PE/PE+ loader.☆50Updated 9 years ago
- NDC Oslo 2019 slides and demos☆32Updated 3 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆75Updated 9 years ago
- idenLib (Library Function Identification) plugin for x32dbg☆41Updated 5 years ago
- Wow64 syscall hook☆40Updated 7 years ago
- PoC for detecting and dumping process hollowing code injection☆50Updated 6 years ago
- a binary x86win32 code obfuscator using virtual machine☆32Updated 7 years ago
- Class implementation of PowerLoader injection technique☆29Updated 7 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆22Updated 7 years ago
- Automatically exported from code.google.com/p/portable-executable-library☆23Updated 5 years ago
- Malware Analysis, Anti-Analysis, and Anti-Anti-Analysis☆43Updated 7 years ago
- A minimal tool to extract shellcode from 64-bit PE binaries.☆48Updated 3 years ago
- Simple library to handle PE files loading, relocating, get/set data, ..., in addition to process handling☆30Updated 5 years ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆40Updated 2 years ago
- ☆33Updated 7 years ago
- vmware-backdoor☆33Updated 3 years ago
- Code Injection technique written in cpp language☆31Updated 6 years ago