Kerisa / ApiMonitor
☆16Updated 3 years ago
Alternatives and similar repositories for ApiMonitor:
Users that are interested in ApiMonitor are comparing it to the libraries listed below
- Another wow64ext to try to be compatible with WOW64 for all architectures.☆94Updated 3 months ago
- 模拟NtTerminateProcess的实现关闭PCHunter☆14Updated 7 years ago
- Using NtCreateFile and NtDeviceIoControlFile to realize the function of winsock(利用NtCreateFile和NtDeviceIoControlFile 实现winsock的功能)☆111Updated 2 years ago
- Driver protect 驱动保护☆45Updated 5 years ago
- Use ntdll/ntoskrnl to implement Kernel32, Advapi32 and other APIs. It includes user-mode and kernel-mode.☆80Updated last month
- SymbolTypeViewer_汉化☆16Updated 4 years ago
- ☆42Updated 3 months ago
- ☆52Updated 2 years ago
- sc4cpp is a shellcode framework based on C++☆88Updated 3 years ago
- Win7内核私有符号结构转储☆67Updated 3 years ago
- ☆27Updated last year
- PDB Explorer 是一个能够查看微软 pdb 文件(Program DataBase,程序数据库)的工具,它能够将 pdb 文件中的 struct、union 及 enum 类型的定义以 C/C++ 的语法显示出来,特别适合 Windows 底层研究人员及 DDK …☆37Updated 9 years ago
- ☆48Updated 2 years ago
- 一个可以帮助你进行Windows驱动开发和分析的工具。☆44Updated 3 years ago
- 过TP驱动☆29Updated 5 years ago
- NTAssassin is a fast, small and powerful library helps C/C++ development on Windows☆32Updated last year
- The Universal C++ RunTime library, supporting kernel-mode C++ exception-handler and STL.☆88Updated last month
- An improved Detours.☆64Updated last week
- 收集常用windows版本内核文件☆32Updated last year
- a ntdll.h head file which download from network, and fix all found problems by me.☆32Updated 4 months ago
- 不使用3环挂钩进行DWM桌面绘制☆80Updated 3 years ago
- 可在非测试模式下符号化读取内核内存。Kernel memory can be read symbolically in non test mode。☆108Updated 2 years ago
- A file system filter, you can do some interesting thing, maybe it's cool.☆56Updated 6 years ago
- c++ implementation of windows heavens gate☆68Updated 4 years ago
- Quick check of NT kernel exported&unexported functions/global variable offset NT内核导出以及未导出函数+全局变量偏移速查☆94Updated 2 years ago
- Based on minhook☆30Updated last year
- Black Signature Driver☆23Updated last year
- 使用 Intel 虚拟化特性实现应用层HOOK☆60Updated 2 months ago
- Process path modification x64☆54Updated 6 years ago
- Kernel-Mode extended version of https://github.com/microsoft/Detours☆161Updated 2 weeks ago