microsoft / DetoursLinks
Detours is a software package for monitoring and instrumenting API calls on Windows. It is distributed in source code form.
☆5,741Updated 2 months ago
Alternatives and similar repositories for Detours
Users that are interested in Detours are comparing it to the libraries listed below
Sorting:
- The Minimalistic x86/x64 API Hooking Library for Windows☆4,930Updated last month
- EasyHook - The reinvention of Windows API Hooking☆3,169Updated last year
- Library to load a DLL from memory.☆2,961Updated last year
- Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide☆3,721Updated last year
- Windows memory hacking library☆5,121Updated last year
- Hook system calls, context switches, page faults and more.☆2,548Updated 2 years ago
- Windows System Call Tables (NT/2000/XP/2003/Vista/7/8/10/11)☆2,343Updated last month
- C++20, x86/x64 Hooking Libary v2.0☆1,715Updated 2 months ago
- Windows tool for dumping malware PE files from memory back to disk for analysis.☆1,752Updated 9 months ago
- Fast and lightweight x86/x86-64 disassembler and code generation library☆3,747Updated last week
- Hiding kernel-driver for x86/x64.☆2,364Updated 2 weeks ago
- Blazing fast and correct x86/x64 disassembler, assembler, decoder, encoder for Rust, .NET, Java, Python, Lua☆3,184Updated last week
- Windows Object Explorer 64-bit☆1,774Updated this week
- Windows Internals Book 7th edition Tools☆2,540Updated last year
- Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.☆6,359Updated last month
- Windows kernel hacking framework, driver template, hypervisor and API written on C++☆1,739Updated last year
- Windows Implementation Library☆2,733Updated this week
- This repo contains samples that demonstrate the API used in Windows classic desktop applications.☆5,352Updated last week
- State-of-the-art native debugging tools☆3,287Updated last week
- A free but powerful Windows kernel research tool.☆2,549Updated 8 months ago
- PE Tools - Portable executable (PE) manipulation toolkit☆1,105Updated 7 years ago
- An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.☆46,266Updated this week
- Public mirror for win32-pr☆1,205Updated this week
- Native API header files for the System Informer project.☆1,199Updated 3 weeks ago
- WinDivert: Windows Packet Divert☆2,804Updated 2 years ago
- Capstone disassembly/disassembler framework for ARM, ARM64 (ARMv8), Alpha, BPF, Ethereum VM, HPPA, LoongArch, M68K, M680X, Mips, MOS65XX,…☆8,094Updated this week
- Kernel Driver Utility☆2,161Updated 7 months ago
- 🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc☆1,909Updated 2 years ago
- This repo contains driver samples prepared for use with Microsoft Visual Studio and the Windows Driver Kit (WDK). It contains both Univer…☆7,359Updated last month
- Memory Debugger for Windows, Linux, Mac, and Android☆2,595Updated last week