m417z / minhook-detoursLinks
A hooking library with a MinHook-like API and a Detours-like implementation, with support for the x86, x64, and ARM64 platforms
☆29Updated 2 months ago
Alternatives and similar repositories for minhook-detours
Users that are interested in minhook-detours are comparing it to the libraries listed below
Sorting:
- A fully compatible replacement of Windows NT NtCreateLowBoxToken syscall - precisely restored from reverse engineering☆41Updated 4 months ago
- An x64dbg plugin which marks XFG call signatures as data☆77Updated 2 years ago
- Windows kernel driver template for cmkr and llvm-msvc.☆33Updated last year
- ☆24Updated 3 months ago
- Example of building an application verifer DLL☆49Updated last year
- Different tools for Microsoft Hyper-V researching☆61Updated 3 months ago
- An x64dbg plugin which helps make sense of long C++ symbols☆57Updated 2 years ago
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆27Updated 2 years ago
- SetWinEventHook Sample☆49Updated 2 years ago
- A ready-made template for a project based on libpeconv.☆50Updated 8 months ago
- Windows kernel PDB data parsed into YAML☆41Updated 11 months ago
- Research on obfuscated licensing APIs / CLIP service in the Windows kernel☆122Updated 3 years ago
- Reimplement CreateProcessInternalW via Windows 10 20H1+/Windows 11 Base on NtCreateUserProcess-Post☆73Updated last year
- Support Windows OS Reversing by searching easily for references to functions across many DLLs☆32Updated 3 years ago
- (This is a fork used primarily to submit patches into upstream repository) RpcView is a free tool to explore and decompile Microsoft RPC …☆19Updated 2 years ago
- A Windows API hooking library !☆31Updated 3 years ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆18Updated 2 years ago
- Windows 10 PE image loader (LDR) NTDLL component toolbox☆49Updated 6 years ago
- ASUSTeK AsIO3 I/O driver unlock☆23Updated 4 years ago
- Tiny C header that allows easy hiding of WinAPI imports via PEB☆33Updated last month
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆63Updated last year
- ☆13Updated 2 years ago
- ☆18Updated 4 years ago
- Fuzzing Harness and Unpatched Crash Results from Fuzzing Defender MpEngine☆37Updated 2 months ago
- A fast method to intercept syscalls from any user-mode process using InstrumentationCallback and detect any process using Instrumentation…☆32Updated 2 years ago
- Command like tool to print mitigation flags for running processes in a memory dump☆47Updated 5 years ago
- Driver demonstrating how to register a DPC to asynchronously wait on an object☆50Updated 4 years ago
- Example/starter code for custom Windows application compatibility shims☆34Updated 4 years ago
- ntoskrnl.exe and bootmgfw.efi obfuscated with CodeDefender☆45Updated this week
- Undocumented MSVC☆38Updated last year