EaseFilterSDK / mini-filter-driver-frameworkLinks
A mini filter driver development framework allows you to develop minit filter driver with different features.
☆60Updated 5 months ago
Alternatives and similar repositories for mini-filter-driver-framework
Users that are interested in mini-filter-driver-framework are comparing it to the libraries listed below
Sorting:
- File system minifilter driver for Windows to block symbolic link attacks.☆52Updated 4 years ago
- Yet another PE Viewer☆144Updated 2 years ago
- View Windows System in action☆41Updated 2 months ago
- Monitor Kernel pool allocations tags☆72Updated last year
- Debug Print viewer (user and kernel)☆68Updated last year
- An example of a client and server using Windows' ALPC functions to send and receive data.☆105Updated 8 months ago
- c++ implementation of windows heavens gate☆72Updated 4 years ago
- Authenticode Hash Calculator for PE32/PE32+ files☆114Updated 3 months ago
- Comparing, discussing, and bypassing various techniques for suspending and freezing processes on Windows.☆128Updated 3 years ago
- Explore Kernel Objects on Windows☆226Updated 6 months ago
- Samples from my book Windows Native API programming☆76Updated 4 months ago
- ☆24Updated 2 months ago
- PE Viewer☆194Updated last month
- Using NtCreateFile and NtDeviceIoControlFile to realize the function of winsock(利用NtCreateFile和NtDeviceIoControlFile 实现winsock的功能)☆112Updated 3 years ago
- Reimplement CreateProcessInternalW via Windows 10 20H1+/Windows 11 Base on NtCreateUserProcess-Post☆69Updated last year
- Hook all callbacks which are registered with LdrRegisterDllNotification☆90Updated 6 months ago
- C++ library for low-level Windows development☆79Updated last year
- DSE bypass using a leaked cert and adjusting the current clock.☆152Updated 3 years ago
- Collection of DLL function export forwards for DLL export function proxying☆105Updated last month
- A WinDbg extension to trace COM interactions☆121Updated last month
- Helper functions for calculating the authenticode digest for a portable executable file☆21Updated 5 years ago
- Sample for Creating a new kernel object type and supporting API☆26Updated last year
- Think APIMonitor, but for .NET binaries.☆57Updated 2 years ago
- Example of building an application verifer DLL☆49Updated last year
- A ProcMon-esque tool for monitoring Windows Kernel Drivers☆58Updated 4 years ago
- A global injection and hooking example☆152Updated last year
- Run any executable as SYSTEM account (no service required)☆140Updated last year
- a ntdll.h head file which download from network, and fix all found problems by me.☆33Updated 9 months ago
- ☆68Updated 7 years ago
- Trace events in real time sessions☆45Updated 2 years ago