tinysec / iathookLinks
windows kernelmode and usermode IAT hook
☆147Updated 4 years ago
Alternatives and similar repositories for iathook
Users that are interested in iathook are comparing it to the libraries listed below
Sorting:
- PatchGuard Research☆302Updated 6 years ago
- hook msr by amd svm☆121Updated 5 years ago
- codes for my blog post: https://secrary.com/Random/InstrumentationCallback/☆177Updated 7 years ago
- Hypervisor based tool for monitoring system register accesses.☆146Updated 6 years ago
- ☆125Updated 5 years ago
- PE permutation library☆273Updated 2 years ago
- Test code only. Not suitable for actual use.☆98Updated 10 years ago
- Collect different versions of Crucial modules.☆142Updated 11 months ago
- Hide codes/data in the kernel address space.☆190Updated 4 years ago
- ☆153Updated 5 years ago
- Windows Kernel Template Library☆110Updated 2 years ago
- Translates WinDbg "dt" structure dump to a C structure☆128Updated 8 years ago
- Detecting execution of kernel memory where is not backed by any image file☆260Updated 6 years ago
- Exploiting CPU-Z Driver To Turn Load Unsigned Drivers☆128Updated 7 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆78Updated 14 years ago
- driver mapper / capcom wrapper☆220Updated 5 years ago
- Intercepting DeviceControl via WPP☆134Updated 5 years ago
- A hypervisor hiding user-mode memory using EPT☆108Updated 7 years ago
- Analyze patches in a process☆254Updated 3 years ago
- Kernel LdrLoadDll injector☆260Updated 6 years ago
- Asynchronous Procedure Calls☆232Updated 4 years ago
- x64 usermode rootkit☆205Updated 7 years ago
- pseudo-code to show how to disable patchguard with win10☆296Updated 7 years ago
- LLVM Obfuscator / constexpr / PEB CALL API☆178Updated 6 years ago
- Windows Driver Kit Extesion Header (Undoc)☆135Updated 3 years ago
- Windbg extension to find PatchGuard pages☆121Updated 11 years ago
- Elevate a process to be a protected process☆150Updated 5 years ago
- Hide Driver By MiProcessLoaderEntry☆287Updated 6 years ago
- StrongOD(anti anti-debug plugin) driver source code.☆121Updated 7 years ago
- MemoryRanger protects kernel data and code by running drivers and hosting data in isolated kernel enclaves using VT-x and EPT features. M…☆228Updated 4 years ago