Fyyre / ntdll
ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h
☆128Updated 5 years ago
Related projects: ⓘ
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆84Updated 8 years ago
- An example of a client and server using Windows' ALPC functions to send and receive data.☆88Updated 4 years ago
- A modern c++ implementation of windows heavens gate☆193Updated 4 years ago
- API Set resolver for Windows☆114Updated last week
- ☆28Updated 5 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆129Updated 5 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆100Updated 4 years ago
- ☆144Updated 3 weeks ago
- Kernel Pool Monitor☆118Updated 2 years ago
- A Windows PE format file loader☆137Updated 6 years ago
- Resolve DOS MZ executable symbols at runtime☆93Updated 2 years ago
- Kernel Detective☆133Updated 2 years ago
- Cross-platform library for parsing and building PE\PE+ formats☆74Updated 2 years ago
- Use ci.dll API for validating Authenticode signature of files☆124Updated 2 years ago
- Elevate a process to be a protected process☆140Updated 5 years ago
- Hide function calls to prevent reverse-engineering☆64Updated 3 years ago
- Collect different versions of Crucial modules.☆126Updated 2 months ago
- Debug Print viewer (user and kernel)☆63Updated 7 months ago
- Authenticode Hash Calculator for PE32/PE32+ files☆104Updated 6 months ago
- C++ Exceptions in Windows Drivers☆195Updated 3 years ago
- Standalone program to download PDB Symbol files for debugging without WDK☆71Updated 5 years ago
- Simple driver to register all available process, thread, image, Registry, and Object callbacks☆117Updated 6 years ago
- Global user-mode hooking framework, based on AppInit_DLLs. The goal is to allow you to rapidly develop hooks to inject in an arbitrary pr…☆156Updated 2 years ago
- Documenting system information classes and their uses☆48Updated 2 years ago
- Library for kernel and user mode splicing for Windows (x86 and x64).☆62Updated 11 years ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆203Updated 4 years ago
- Windows Kernel Template Library☆108Updated 2 years ago
- A ProcMon-esque tool for monitoring Windows Kernel Drivers☆50Updated 3 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆214Updated 2 years ago
- Execute commands as local system.☆61Updated 5 years ago