m417z / minhook-detoursLinks
A hooking library with a MinHook-like API and a Detours-like implementation, with support for the x86, x64, and ARM64 platforms
☆26Updated last month
Alternatives and similar repositories for minhook-detours
Users that are interested in minhook-detours are comparing it to the libraries listed below
Sorting:
- Different tools for Microsoft Hyper-V researching☆60Updated last month
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆27Updated 2 years ago
- An x64dbg plugin which marks XFG call signatures as data☆77Updated 2 years ago
- A fully compatible replacement of Windows NT NtCreateLowBoxToken syscall - precisely restored from reverse engineering☆41Updated 3 months ago
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆34Updated 3 years ago
- Example of building an application verifer DLL☆50Updated last year
- A ready-made template for a project based on libpeconv.☆47Updated 6 months ago
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆61Updated last year
- FastSymApi - A Fast API PDB Symbol Cache Server that efficiently caches and compresses PDBs on disk for quick and repeated retrieval.☆19Updated 2 months ago
- An x64dbg plugin which helps make sense of long C++ symbols☆59Updated 2 years ago
- A Windows API hooking library !☆31Updated 3 years ago
- Windows kernel driver template for cmkr and llvm-msvc.☆35Updated last year
- SetWinEventHook Sample☆49Updated last year
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆18Updated 2 years ago
- Windows kernel PDB data parsed into YAML☆40Updated 10 months ago
- Helper scripts for windows debugging with symbols for Bochs and IDA Pro (PDB files). Very handy for user mode <--> kernel mode☆19Updated 2 years ago
- Windows Minidump loader for Ghidra☆29Updated 2 years ago
- Authenticode-parser is a simple C library for Authenticode format parsing using OpenSSL.☆18Updated last year
- clone of armadillo patched for windows☆47Updated 10 months ago
- ☆13Updated 2 years ago
- Undocumented MSVC☆34Updated last year
- ☆24Updated last month
- Extract data of TTD trace file to a minidump☆30Updated 2 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆73Updated 2 years ago
- ASUSTeK AsIO3 I/O driver unlock☆23Updated 4 years ago
- Miscellaneous Code and Docs☆82Updated 2 months ago
- A fast method to intercept syscalls from any user-mode process using InstrumentationCallback and detect any process using Instrumentation…☆32Updated last year
- Command like tool to print mitigation flags for running processes in a memory dump☆47Updated 4 years ago
- ☆21Updated 4 years ago
- Various reverse engineering work on Windows☆20Updated 4 years ago