qtkite
|
9715e68db8
|
impersonate system + better permission check
|
3 years ago |
qtkite
|
35195a5e49
|
get current path
|
3 years ago |
qtkite
|
0b363972a6
|
permission check
|
3 years ago |
qtkite
|
a622cba783
|
trusted installer template
|
3 years ago |
qtkite
|
f390ea9b0d
|
demo
|
3 years ago |
qtkite
|
5e721aab6c
|
refactoring dcontrol.cpp code
|
3 years ago |
qtkite
|
14e1dd75a7
|
wmic wrapper for SET
|
3 years ago |
qtkite
|
41dda76795
|
connect to wmi constructor
|
3 years ago |
qtkite
|
fbd9b562dd
|
worker class template
|
3 years ago |
qtkite
|
84b7bcb66e
|
DisableRealtimeMonitoring toggle
|
3 years ago |
qtkite
|
747a1be05b
|
disabling defender from wmi!
|
3 years ago |
qtkite
|
feda4728ee
|
update comment
|
3 years ago |
qtkite
|
d3d46a1e2a
|
renamed test func accordingly
|
3 years ago |
qtkite
|
b1ce90aff8
|
implemented windows example
|
3 years ago |
qtkite
|
5255a6cfae
|
connect to wmi + proxy security
|
3 years ago |
qtkite
|
5cd0acc3db
|
step 1->3 from msdn
|
3 years ago |
qtkite
|
de966641a9
|
shell32
|
3 years ago |
qtkite
|
b4e809ea53
|
wmic namespace + shell hook
|
3 years ago |
qtkite
|
6649ae734d
|
com class
|
3 years ago |
qtkite
|
2fbc1a33d7
|
more hooks xd
|
3 years ago |
qtkite
|
3a4cc3d0ee
|
start av
|
3 years ago |
qtkite
|
c449f56fb7
|
wmic namespace + refactor
|
3 years ago |
qtkite
|
da7d72af19
|
vtable call dump
|
3 years ago |
qtkite
|
9ac65c6009
|
more wmic templates
|
3 years ago |
qtkite
|
41fc53e62e
|
change of plans, going to use wmic
|
3 years ago |
qtkite
|
e8ca1c6fd0
|
removed to-do
|
3 years ago |
qtkite
|
10b7ce23e0
|
enable + disable routine hooks
|
3 years ago |
qtkite
|
9a09527155
|
registry edits done
|
3 years ago |
zhwu2697
|
4688174100
|
releasing handles after use
|
3 years ago |
zhwu2697
|
3b11aacf3c
|
refactored key
|
3 years ago |
zhwu2697
|
efe72a25f0
|
added flags for dbg
|
3 years ago |
zhwu2697
|
b6e8f369f9
|
fixed export
|
3 years ago |
zhwu2697
|
a29d2d6aec
|
implemented defender check
|
3 years ago |
zhwu2697
|
321ba8f9cb
|
fixed TODO
|
3 years ago |
zhwu2697
|
06246f7c5b
|
crashes fixed itself ig
|
3 years ago |
zhwu2697
|
a66452c280
|
added full log dump + hook fixes
|
3 years ago |
zhwu2697
|
74b07c7933
|
hooked RegEnumKeyExW
|
3 years ago |
zhwu2697
|
867d96156d
|
fixed enum bug + wrong ret addrr
|
3 years ago |
zhwu2697
|
65f8affe77
|
hk_RegConnectRegistryW
also fixed unreferenced calls
|
3 years ago |
qtKite
|
744180f585
|
fixed hk_RegCreateKeyExW calling conv
|
3 years ago |
qtKite
|
ef5d3a847c
|
fixed get_func_addr syntax
|
3 years ago |
qtKite
|
94947bcab9
|
implemented hooks
|
3 years ago |
qtKite
|
c749b0ac7d
|
cleared up TODO
|
3 years ago |
qtKite
|
f9dbc5ce45
|
hk_RegCreateKeyExW template
|
3 years ago |
qtKite
|
b924e2630f
|
hk_RegSetValueExW hook
|
3 years ago |
qtKite
|
bd02aa4a82
|
handle command hook test
|
3 years ago |
qtKite
|
7c3cd899d9
|
included pattern
|
3 years ago |
qtKite
|
5d73b3d1fc
|
activation routine hook
|
3 years ago |
qtKite
|
de9d832cdf
|
str helper
|
3 years ago |
qtKite
|
18ffd07a68
|
fixed hooks w function
|
3 years ago |
qtKite
|
0111d25ed1
|
fixed hooks stdcall
|
3 years ago |
qtKite
|
8dd821fd3c
|
removed hooked example, added basic impl
|
3 years ago |
qtKite
|
8ac410d229
|
typo fix
|
3 years ago |
qtKite
|
7065fb7de8
|
RegDeleteValueW hook
|
3 years ago |
qtKite
|
888d4d1dd1
|
precompiled binary files
|
3 years ago |
qtKite
|
6b2cbecf70
|
detour readme
|
3 years ago |
qtKite
|
f9ccb5be9f
|
to-do for dcontrol
|
3 years ago |
qtKite
|
87ebe513f8
|
changed indentation
|
3 years ago |
qtKite
|
9ad42e4449
|
shortened hk names
|
3 years ago |
qtKite
|
ff54aacc7f
|
added ms doc for RegenumValueW
|
3 years ago |
qtKite
|
5721fc6477
|
added basic book
|
3 years ago |
qtKite
|
26598c0e01
|
x64 dumper configuration
|
3 years ago |
qtKite
|
8aaef07cef
|
TO-DO comments
|
3 years ago |
qtKite
|
452a8cbe82
|
detour note
|
3 years ago |
qtKite
|
68634f2a15
|
added list of functions to hook
|
3 years ago |
qtKite
|
c18a088480
|
added detour binaries
|
3 years ago |
qtKite
|
6d2285bc9d
|
dumper files
|
3 years ago |
zhwu2697
|
9261bec39c
|
visual studio project
|
3 years ago |