Kerisa / ApiMonitorLinks
☆17Updated 3 years ago
Alternatives and similar repositories for ApiMonitor
Users that are interested in ApiMonitor are comparing it to the libraries listed below
Sorting:
- SymbolTypeViewer_汉化☆17Updated 4 years ago
- Using NtCreateFile and NtDeviceIoControlFile to realize the function of winsock(利用NtCreateFile和NtDeviceIoControlFile 实现winsock的功能)☆111Updated 2 years ago
- Another wow64ext to try to be compatible with WOW64 for all architectures.☆94Updated 5 months ago
- 使用 Intel 虚拟化特性实现应用层HOOK☆61Updated 4 months ago
- Use ntdll/ntoskrnl to implement Kernel32, Advapi32 and other APIs. It includes user-mode and kernel-mode.☆85Updated 3 weeks ago
- ☆53Updated 2 years ago
- 模拟NtTerminateProcess的实现关闭PCHunter☆14Updated 7 years ago
- Compile-time + Lifetime, Usermode + Kernelmode, safe and lightweight string crypter library for C++17+, based on skCrypter☆11Updated 7 months ago
- Driver protect 驱动保护☆46Updated 5 years ago
- 一个windows内核驱动分析框架,对内核所有导出函数进行挂钩监控☆52Updated last month
- ☆27Updated last year
- 过TP驱动☆29Updated 5 years ago
- ☆42Updated 4 months ago
- PDB Explorer 是一个能够查看微软 pdb 文件(Program DataBase,程序数据库)的工具,它能够将 pdb 文件中的 struct、union 及 enum 类型的定义以 C/C++ 的语法显示出来,特别适合 Windows 底层研究人员及 DDK …☆38Updated 10 years ago
- Based on minhook☆30Updated last year
- Win7内核私有符号结构转储☆68Updated 3 years ago
- NTAssassin is a fast, small and powerful library helps C/C++ development on Windows☆32Updated last year
- Native API header files for the Process Hacker project.☆15Updated 2 years ago
- ☆48Updated 2 years ago
- 收集常用windows版本内核文件☆33Updated last year
- 这篇文章的目的是介绍一款实验性项目基于COM命名管道或者Windows Hyper-V虚拟机Vmbus通道实现的运行在uefi上的windbg调试引擎开发心得☆40Updated last year
- 保护进程☆23Updated 2 years ago
- InstDrv v2☆38Updated 10 months ago
- Windows Kernel Security: Memory Integrity Verification with Disk Verification of ntoskrnl.exe☆12Updated 2 months ago
- Emulate Drivers in RING3 with self context mapping or unicorn☆29Updated 5 months ago
- ☆28Updated 2 years ago
- Black Signature Driver☆24Updated last year
- ☆36Updated 2 years ago
- a monitoring windows driver calls kernel api tools☆103Updated 11 months ago
- A Windows executable (PE) loader (x86 and x64) with full TLS (Thread Local Storage) support (manual mapper)☆29Updated last week