vic4key / Cpp-Hooking
Cpp Hooking - Set up function hooking easily and writing less code (P.S You can also find the python version @ https://github.com/vic4key/py-hooking.git)
☆29Updated last year
Alternatives and similar repositories for Cpp-Hooking:
Users that are interested in Cpp-Hooking are comparing it to the libraries listed below
- Debug Print viewer (user and kernel)☆65Updated last year
- X86/X64 Hardware Breakpoint Manager☆41Updated 3 years ago
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆69Updated 2 years ago
- ☆27Updated last year
- Bypassing kernel patch protection runtime☆20Updated 2 years ago
- PoC code for IsValidImageCRC()☆16Updated last year
- unorthodox approach to analyze a trace, but this helped me get comfy with x64 instructions overall (excluding sse/avx/etc lol), cleared u…☆57Updated last year
- ZeroImport is a lightweight and easy to use C++ library for Windows Kernel Drivers. It allows you to hide any import in your kernel drive…☆48Updated 2 years ago
- just proof of concept. hooking MmCopyMemory PG safe.☆68Updated last year
- Binary DisASseMbler☆23Updated 2 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆43Updated last year
- VMP Mutation API Fix☆41Updated 3 years ago
- Windows kernel driver template for cmkr (with testsigning).☆30Updated last year
- Kernel ReClassEx☆65Updated last year
- Native API header files for the Process Hacker project (nightly).☆26Updated this week
- This is a POC Test project for INTEL CPUs on blocking NMI Entries through the IDT Handler.☆41Updated 5 months ago
- Header-only C++ library for producing PE files.☆31Updated last year
- ☆24Updated last year
- Driver shared section communication☆45Updated last week
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆63Updated last year
- Static Library For Windows Drivers☆33Updated last month
- ☆30Updated 3 years ago
- Load dll with undocumented functions and debug symbols☆47Updated 8 months ago
- A basic 100 loc CPU emulator using the existing code of ntoskrnl.exe☆71Updated last year
- A devirtualization engine for Themida.☆97Updated last year
- ☆29Updated 6 months ago
- Elevate arbitrary MSR writes to kernel execution.☆32Updated last year
- devirtualization vmprotect☆62Updated 2 years ago
- partially disable patchguard up to win11 21H2☆19Updated 9 months ago
- windows kernelmode driver to inject dll into each and every process and perform systemwide function hooking☆52Updated 2 years ago