HoShiMin / formatPE
A bunch of parsers for PE and PDB formats in C++
☆240Updated 11 months ago
Alternatives and similar repositories for formatPE:
Users that are interested in formatPE are comparing it to the libraries listed below
- The Universal C++ RunTime library, supporting kernel-mode C++ exception-handler and STL.☆400Updated 9 months ago
- COFF and Portable Executable format described using standard C++ with no dependencies.☆278Updated last month
- C++ STL in the Windows Kernel with C++ Exception Support☆407Updated last year
- Collection of undocumented Windows API declarations.☆310Updated 2 weeks ago
- System call hook for Windows 10 20H1☆483Updated 3 years ago
- C++17 PE manualmapper☆345Updated 3 years ago
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆247Updated 2 months ago
- A modern c++ implementation of windows heavens gate☆217Updated 4 years ago
- C++ Exceptions in Windows Drivers☆207Updated 4 years ago
- Vectored Exception Handling Hooking Class☆156Updated 6 years ago
- Detours with just single dependency - NTDLL☆632Updated 2 years ago
- Windows inline hooking tool.☆259Updated 6 years ago
- MemoryModule which compatible with Win32 API and support exception handling☆398Updated 2 months ago
- Use ci.dll API for validating Authenticode signature of files☆138Updated 3 years ago
- C/C++ Runtime library for system file (Windows Kernel Driver) - Supports Microsoft STL☆183Updated 2 years ago
- This program remaps its image to prevent the page protection of pages contained in the image from being modified via NtProtectVirtualMemo…☆598Updated 6 years ago
- This project migrated to https://github.com/backengineering/llvm-msvc☆141Updated last year
- modify from memorymodule. support exception☆216Updated 4 years ago
- Kernel LdrLoadDll injector☆260Updated 6 years ago
- Obfuscates all RTTI (Run-time type information) inside a binary☆194Updated 7 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆312Updated 2 years ago
- The program draws with win32k gdi functions in the kernel while NtGdiDdDDISubmitCommand is being hooked.☆286Updated 4 years ago
- Elevate a process to be a protected process☆149Updated 5 years ago
- A wrapper library around native windows sytem APIs☆432Updated 4 years ago
- The most powerful and customizable binary pattern scanner☆216Updated 3 years ago
- ☆165Updated 7 years ago
- C++ library for parsing and manipulating PE files statically and dynamically.☆86Updated last year
- Single-header, minimalistic, cross-platform hook library written in pure C☆323Updated 6 months ago
- Debugger Anti-Detection Benchmark☆328Updated last year
- Library for parsing internal structures of PE32/PE32+ binary files.☆164Updated 4 months ago