microsoft / Detours
Detours is a software package for monitoring and instrumenting API calls on Windows. It is distributed in source code form.
☆5,659Updated last month
Alternatives and similar repositories for Detours:
Users that are interested in Detours are comparing it to the libraries listed below
- The Minimalistic x86/x64 API Hooking Library for Windows☆4,760Updated 3 weeks ago
- EasyHook - The reinvention of Windows API Hooking☆3,146Updated last year
- Library to load a DLL from memory.☆2,932Updated last year
- Windows tool for dumping malware PE files from memory back to disk for analysis.☆1,724Updated 8 months ago
- C++20, x86/x64 Hooking Libary v2.0☆1,687Updated last month
- Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide☆3,668Updated 11 months ago
- Hook system calls, context switches, page faults and more.☆2,535Updated 2 years ago
- Windows System Call Tables (NT/2000/XP/2003/Vista/7/8/10/11)☆2,311Updated last week
- Windows Object Explorer 64-bit☆1,747Updated last month
- Fast and lightweight x86/x86-64 disassembler and code generation library☆3,685Updated last month
- A free but powerful Windows kernel research tool.☆2,519Updated 6 months ago
- Windows memory hacking library☆5,054Updated last year
- Blazing fast and correct x86/x64 disassembler, assembler, decoder, encoder for Rust, .NET, Java, Python, Lua☆3,132Updated this week
- Hiding kernel-driver for x86/x64.☆2,285Updated 2 months ago
- More than a ReClass port to the .NET platform.☆1,937Updated last year
- A list of IDA Plugins☆3,674Updated 11 months ago
- The OpenSource Disassembler☆1,647Updated 6 months ago
- Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loadi…☆2,912Updated 2 years ago
- DebugView++, collects, views, filters your application logs, and highlights information that is important to you!☆1,097Updated 4 months ago
- Windows dll injector☆2,249Updated 3 years ago
- WinDivert: Windows Packet Divert☆2,749Updated 2 years ago
- Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.☆6,301Updated 2 weeks ago
- User interface for recording and managing ETW traces☆1,622Updated last year
- PE Tools - Portable executable (PE) manipulation toolkit☆1,093Updated 7 years ago
- Capstone disassembly/disassembler framework for ARM, ARM64 (ARMv8), Alpha, BPF, Ethereum VM, HPPA, LoongArch, M68K, M680X, Mips, MOS65XX,…☆7,996Updated this week
- A Windows API hooking library☆748Updated 4 years ago
- Windows Implementation Library☆2,691Updated this week
- Information from Microsoft about the PDB format. We'll try to keep this up to date. Just trying to help the CLANG/LLVM community get ont…☆1,890Updated 2 years ago
- Windows kernel hacking framework, driver template, hypervisor and API written on C++☆1,722Updated last year
- Snowman decompiler☆2,264Updated 2 years ago