Skip to content

A compact tool for detecting AV/EDR hooks in default libaries.

License

Notifications You must be signed in to change notification settings

gmh5225/Detect-hook-buster

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

6 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

hook-buster

MIT License Windows 10

Introduction

A compact tool for detecting AV/EDR hooks in default libaries such as ntdll.dll, kernel32.dll and kernelbase.dll.

Example usage:

Usage example

About

A compact tool for detecting AV/EDR hooks in default libaries.

Resources

License

Stars

Watchers

Forks

Packages

No packages published

Languages

  • C 100.0%