Mattiwatti / WinMain-is-usually-a-function
Windows NT port of 'Main is usually a function. So then when is it not?'
☆24Updated 8 months ago
Related projects ⓘ
Alternatives and complementary repositories for WinMain-is-usually-a-function
- Static library and headers for linking your software with ntdll.dll☆30Updated 4 years ago
- penter hook example and driver time recorder☆31Updated 7 years ago
- Helper utility for debugging windows PE/PE+ loader.☆50Updated 9 years ago
- ASUSTeK AsIO3 I/O driver unlock☆19Updated 3 years ago
- ☆18Updated 7 years ago
- This repository contains some tools that I have written in the past☆26Updated last year
- Windbg extension that allows you analyze Control Flow Guard map☆36Updated 3 years ago
- ☆13Updated 3 years ago
- Plugin to label PEB addresses.☆29Updated 7 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆33Updated 4 months ago
- just an lite AntiRootkit for interesting☆23Updated 8 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆52Updated 8 months ago
- A Hobbyist Operating System based off the ReactOS/NT Kernel experimenting with OS Development.☆26Updated 12 years ago
- Full reversing of the Microsoft Auxiliary Windows API Library and ported to C☆23Updated last year
- User-mode program parsing logs created by HyperPlatform☆17Updated 8 years ago
- Shows different icons for 64 and 32-bit DLLs. Register with RegSvr32 to install☆32Updated 2 years ago
- Simple error lookup for Win32 and NTSTATUS errors☆17Updated 5 years ago
- Various WinDbg extensions and scripts☆31Updated 6 years ago
- A tool to investigate the Windows device manager☆14Updated 5 years ago
- x64dbg Plugin SDK For x64 Assembler☆22Updated 6 years ago
- Plugin for x64dbg to break on unresolved APIs.☆12Updated 7 years ago
- ☆22Updated 3 years ago
- Windows Console Monitor☆32Updated 5 years ago
- Proof of concept headless GUI DLL☆12Updated 3 years ago
- viewing page boundaries of pages with PAGE_NOACCESS protection reveals the presence of x64dbg.☆22Updated 7 years ago
- Figuring out the cause of a handle downgrade☆23Updated last year
- Simple PE packer with RtlCompressBuffer☆21Updated 9 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆21Updated 7 years ago
- Personal curation of Clang/LLVM patches.☆13Updated 3 years ago