Skip to content

A compact tool for detecting AV/EDR hooks in default Windows libraries.

License

Notifications You must be signed in to change notification settings

st4ckh0und/hook-buster

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

8 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

hook-buster

MIT License Windows 10

Introduction

A compact tool for detecting AV/EDR hooks in default libraries such as ntdll.dll, kernel32.dll and kernelbase.dll.

Example usage:

Usage example

About

A compact tool for detecting AV/EDR hooks in default Windows libraries.

Resources

License

Stars

Watchers

Forks

Packages

No packages published