Analyze patches in a process
☆260Jul 28, 2021Updated 4 years ago
Alternatives and similar repositories for HookHunter
Users that are interested in HookHunter are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Obfuscate calls to imports by patching in stubs☆76Aug 4, 2021Updated 4 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆93Sep 23, 2023Updated 2 years ago
- X86 Mutation Engine with Portable Executable compatibility.☆535May 24, 2022Updated 3 years ago
- X86/X64 Hardware Breakpoint Manager☆41Jun 18, 2021Updated 4 years ago
- Fix VMProtect Import Protection☆374Aug 12, 2021Updated 4 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Universal x86/x64 VMProtect 2.0-3.X Import fixer☆26Dec 29, 2021Updated 4 years ago
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆662Jan 28, 2025Updated last year
- ☆435Jan 1, 2025Updated last year
- comparing data of module exports from disk and memory, then caching any differences.☆26Dec 11, 2021Updated 4 years ago
- Load your driver like win32k.sys☆258Aug 20, 2022Updated 3 years ago
- Code Injection, Inject malicious payload via pagetables pml4.☆243Jul 7, 2021Updated 4 years ago
- C++ STL in the Windows Kernel with C++ Exception Support☆437Aug 16, 2023Updated 2 years ago
- System call hook for Windows 10 20H1☆494Jun 26, 2021Updated 4 years ago
- Kernel Lazy Importer☆140Apr 13, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Emulate Drivers in RING3 with self context mapping or unicorn☆365Aug 18, 2022Updated 3 years ago
- InfinityHookPro Win7 -> Win11 latest☆554Feb 7, 2023Updated 3 years ago
- This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemo…☆632Mar 19, 2019Updated 7 years ago
- ☆193Dec 8, 2021Updated 4 years ago
- Tutorial on solving a VM based CrackMe.☆66Jul 23, 2020Updated 5 years ago
- ☆225Mar 11, 2023Updated 3 years ago
- Easy Anti PatchGuard☆221Apr 9, 2021Updated 5 years ago
- Kernel driver for detecting Intel VT-x hypervisors.☆200Jul 11, 2023Updated 2 years ago
- Inline syscalls made easy for windows on clang☆737Jun 21, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Hide codes/data in the kernel address space.☆188May 8, 2021Updated 4 years ago
- Kernel DLL Injector using NX Bit Swapping and VAD hide for hiding injected DLL☆221Nov 12, 2020Updated 5 years ago
- A VMP to VTIL lifter.☆448May 20, 2021Updated 4 years ago
- Obfuscate specific windows apis with different apis☆1,021Feb 21, 2021Updated 5 years ago
- usermode standalone kernel interface☆112Jul 9, 2018Updated 7 years ago
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,289Apr 2, 2026Updated last month
- Experimental disassembler for x86 binaries virtualized by VMProtect 3☆94Aug 27, 2022Updated 3 years ago
- IDA Pro plugin to make bitfield accesses easier to grep☆255Aug 3, 2025Updated 9 months ago
- base for testing☆189Sep 28, 2024Updated last year
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Browse Page Tables on Windows (Page Table Viewer)☆238Apr 2, 2022Updated 4 years ago
- windows kernelmode driver to inject dll into each and every process and perform systemwide function hooking☆53Aug 28, 2022Updated 3 years ago
- Bypassing EasyAntiCheat.sys self-integrity by abusing call hierarchy☆82Oct 6, 2022Updated 3 years ago
- Manual mapping without creating any threads, with rw only access☆813Oct 29, 2019Updated 6 years ago
- Scans all modules in target process for jmp/int3 hooks dissassembles then and follows jmps to destination.☆80Nov 5, 2023Updated 2 years ago
- This tool will allow you to spoof the return addresses of your functions as well as system functions.☆562Nov 12, 2022Updated 3 years ago
- A bunch of parsers for PE and PDB formats in C++☆270May 15, 2024Updated last year