HoShiMin / formatPE
A bunch of parsers for PE and PDB formats in C++
☆226Updated 6 months ago
Related projects ⓘ
Alternatives and complementary repositories for formatPE
- Collection of undocumented Windows API declarations.☆291Updated 3 weeks ago
- The Universal C++ RunTime library, supporting kernel-mode C++ exception-handler and STL.☆399Updated 4 months ago
- COFF and Portable Executable format described using standard C++ with no dependencies.☆255Updated 7 months ago
- C++ STL in the Windows Kernel with C++ Exception Support☆392Updated last year
- A modern c++ implementation of windows heavens gate☆194Updated 4 years ago
- System call hook for Windows 10 20H1☆481Updated 3 years ago
- Use ci.dll API for validating Authenticode signature of files☆129Updated 2 years ago
- MemoryModule which compatible with Win32 API and support exception handling☆359Updated 2 weeks ago
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆232Updated 7 months ago
- C/C++ Runtime library for system file (Windows Kernel Driver) - Supports Microsoft STL☆184Updated 2 years ago
- C++ Exceptions in Windows Drivers☆198Updated 3 years ago
- A wrapper library around native windows sytem APIs☆421Updated 3 years ago
- Windows Kernel Driver with C++ runtime☆167Updated 4 years ago
- C++17 PE manualmapper☆259Updated 3 years ago
- This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemo…☆563Updated 5 years ago
- Vectored Exception Handling Hooking Class☆145Updated 5 years ago
- Detours with just single dependency - NTDLL☆612Updated 2 years ago
- The Win32 Anti-Intrusion Library☆204Updated 5 years ago
- modify from memorymodule. support exception☆211Updated 4 years ago
- [WIP] A forked version of LLVM-18 that prioritizes MSVC compatibility. This version is tailored for Windows users.☆221Updated last month
- Kernel LdrLoadDll injector☆258Updated 6 years ago
- Analyze patches in a process☆247Updated 3 years ago
- Windows inline hooking tool.☆226Updated 6 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆251Updated 4 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆226Updated 2 years ago
- Elevate a process to be a protected process☆142Updated 5 years ago
- A x64 Windows Rootkit using SSDT or Hypervisor hook☆512Updated 3 weeks ago
- Advanced x86/x86-64 hooking library (WIP).☆125Updated last year
- A header-only C++ library for accessing files in COFF binary format. (Including Windows PE/PE+ formats)☆188Updated this week
- The most powerful and customizable binary pattern scanner☆208Updated 3 years ago