therealdreg / phookLinks
Full DLL Hooking, phrack 65
☆53Updated last year
Alternatives and similar repositories for phook
Users that are interested in phook are comparing it to the libraries listed below
Sorting:
- ☆34Updated 7 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 7 years ago
- An Integrity-Check Monitoring Pintool☆58Updated 4 years ago
- A simple API monitor for Windbg☆63Updated 8 years ago
- Adding exceptions to Microsoft's Control Flow Guard (CFG)☆58Updated 9 years ago
- SentinelOne's KeRnel Exploits Advanced Mitigations☆54Updated 6 years ago
- ☆34Updated 3 years ago
- Anti-technique Codes, Detection of Anti-technique codes☆38Updated 11 years ago
- POC viruses I have created to demo some ideas☆59Updated 5 years ago
- Malware Analysis, Anti-Analysis, and Anti-Anti-Analysis☆45Updated 7 years ago
- Load a Windows Kernel Driver☆92Updated 8 years ago
- PoC for Bypassing UM Hooks By Bruteforcing Intel Syscalls☆38Updated 9 years ago
- Decrement Windows Kernel for fun and profit☆38Updated 7 years ago
- Flare-On solutions☆36Updated 5 years ago
- A simple tool to view important DLL Characteristics and change DEP and ASLR☆44Updated 6 years ago
- ☆45Updated 7 years ago
- IDA plugin to explore and browse tags☆56Updated 5 years ago
- ☆22Updated 4 years ago
- Import DynamoRIO drcov code coverage data into Ghidra☆44Updated last year
- A set of small utilities, helpers for PIN tracers☆33Updated last year
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- A VBScript for detecting VirtualBox☆21Updated 9 years ago
- x86 bootloader emulation with Miasm (case of NotPetya)☆43Updated 6 years ago
- IDA script for vmprotect Windows Api address decoder☆51Updated 4 years ago
- My notes about Genyatyk VM crackme☆26Updated 5 years ago
- ☆46Updated 4 years ago
- Exploits pack for the Windows Kernel mode driver HackSysExtremeVulnerableDriver written for educational purposes.☆66Updated 3 years ago
- ☆80Updated 7 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆29Updated 8 years ago
- A slightly stripped down version of RID (an exercise in learning python C-Types...some of it is a little rushed/sloppy) and a stripped do…☆51Updated 12 years ago