nblog / Win32-Hook-Demo
reveal and detect of common hooks under win32
☆13Updated 4 years ago
Alternatives and similar repositories for Win32-Hook-Demo:
Users that are interested in Win32-Hook-Demo are comparing it to the libraries listed below
- get ntdll syscall index☆12Updated 4 years ago
- Translates WinDbg "dt" structure dump to a C structure☆13Updated 4 years ago
- A small header file mapping status codes passed to KiExceptionDispatch before KiPreprocessFault to individual CPU faults.☆13Updated 5 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆42Updated last year
- Open Anti Cheat☆27Updated 2 years ago
- Some eternal WIP stuff :)☆15Updated last week
- x64 assembler library☆31Updated 8 months ago
- Example of hijacking system calls via function pointer tables☆32Updated 3 years ago
- ☆48Updated 6 years ago
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- eac memory sig maker☆12Updated 3 years ago
- ☆34Updated 4 years ago
- pdb's function and global vars to offset☆10Updated last year
- An example code of CiGetCertPublisherName☆14Updated 2 years ago
- Ready-to-use headers for Windows Kernel SSDT indices☆11Updated 4 years ago
- bypass CRC☆11Updated 6 years ago
- 对debughelp的二次开发☆11Updated 2 years ago
- ☆13Updated 5 years ago
- Map memory to user space and manipulate user memory, using capmon☆23Updated 6 years ago
- Intel-VT-x/Hook Msr Build and Replace System Server Description Table.☆12Updated 5 years ago
- Hacker Disassembler Engine - mirro☆17Updated 2 years ago
- ☆24Updated 5 years ago
- Detects if a Kernel mode debugger is active by reading the value of KUSER_SHARED_DATA.KdDebuggerEnabled. It is a high level and portable …☆23Updated 7 years ago
- ☆30Updated last year
- Injector with kernel power☆16Updated 4 years ago
- (shard of furikuri project) assambler for code obfuscation☆18Updated 5 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆23Updated 8 years ago
- A class to gather information about a process, its threads and modules.☆24Updated 4 years ago
- direct systemcalls with a modern c++20 interface.☆42Updated 2 years ago
- A way to detect DBI frameworks, Debuggers and VMs.☆22Updated 4 years ago