Chuyu-Team / woflibLinks
An open source library for operating the Windows Overlay Filter driver.
☆22Updated 6 years ago
Alternatives and similar repositories for woflib
Users that are interested in woflib are comparing it to the libraries listed below
Sorting:
- A tool to investigate the Windows device manager☆12Updated 6 years ago
- ☆29Updated 4 years ago
- Command line utility that executes a command (plaintext or encryted) as another user account or under specified user session☆18Updated 6 years ago
- Final Transparent encrypted version☆14Updated 8 years ago
- A simple ransomware defender.It uses minifilter to filt "rewrite" and "delete" events in kernel.And it handles event in user mode.☆27Updated 7 years ago
- DTrace for Windows in userspace; Frontend to ETW☆27Updated 3 years ago
- Easy Transparent Encrypted File System Based on Minifilter File System Driver☆35Updated 3 months ago
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆21Updated 2 years ago
- ☆35Updated 5 years ago
- copy of tdifw lib☆10Updated 8 years ago
- Windows Offline Crash Dump☆17Updated 3 years ago
- it can extract functions from .dll, .exe, .sys and it be work! :)☆40Updated 6 years ago
- The kernel mode Standard Template Library Template☆19Updated 5 years ago
- HTTP/HTTPS/DNS inspector (windows driver)☆27Updated 6 years ago
- A driver that supports communication between a Windows guest and HyperWin☆15Updated 4 years ago
- Event Tracing for Windows Custom Events☆21Updated 10 years ago
- Windows Monitoring Agent (process creation + DLL loading monitor + network monitor + file system access monitor + etc)☆63Updated 6 years ago
- Demonstrate the new FileDispositionInfoEx behavior☆14Updated 8 years ago
- Static library and headers for linking your software with ntdll.dll☆37Updated 6 years ago
- Sysark全称system anti-rootkit,是我学习内核写的工具(2013年的代码,后续不会再更新),里面基本上所有的功能都是用内核实现的。这里只是实现了反rootkit部分功能,作为工具的话,本人觉得还欠完善,但作为学习,或有人需要。目前针对的是XP SP2,…☆27Updated 8 years ago
- An minifilter-based transparent encryptor on Windows.☆30Updated 8 years ago
- ☆12Updated 8 years ago
- Dump PDB Symbols including support for Bochs Debugging Format (with wine support)☆14Updated 2 years ago
- MouHidInputHook enables users to filter, modify, and inject mouse input data packets into the input data stream of HID USB mouse devices …☆11Updated 6 years ago
- 基于WinDivert实现的一个包过滤与截断程序☆13Updated 7 years ago
- use crystalCPUID to identify vt-x & amd-v☆17Updated 10 years ago
- A plugin for x64dbg.☆24Updated 4 years ago
- Example of real-time Windows ETW packet capture session☆54Updated 8 years ago
- Lightweight WINAPI tracing with Pin☆27Updated 6 years ago
- A working version of this tutorial: https://docs.microsoft.com/en-us/windows/desktop/rpc/tutorial☆16Updated 6 years ago