TimMisiak / WinDbgCookbook
This is a repo for small, useful scripts and extensions
☆249Updated last year
Alternatives and similar repositories for WinDbgCookbook
Users that are interested in WinDbgCookbook are comparing it to the libraries listed below
Sorting:
- Toy scripts for playing with WinDbg JS API☆228Updated 10 months ago
- A bunch of JavaScript extensions for WinDbg.☆337Updated 5 months ago
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆138Updated 2 years ago
- A WinDbg extension to trace COM interactions☆114Updated last year
- Useful scripts for WinDbg using the debugger data model☆411Updated last year
- Hyper-V Research is trendy now☆179Updated last year
- Bindings for Microsoft WinDBG TTD☆220Updated last year
- A Windows kernel dump C++ parser library with Python 3 bindings.☆200Updated 10 months ago
- The history of Windows Internals via symbols.☆177Updated 3 years ago
- A DTrace on Windows Reimplementation☆344Updated 3 months ago
- A Cross-Platform C++ parser library for Windows user minidumps with Python 3 bindings.☆203Updated 5 months ago
- Hyper-V Research is trendy now☆163Updated 3 weeks ago
- This is a collection of interesting codes about Windows Process creation.☆232Updated last year
- My personal cheat sheet for using WinDbg for kernel debugging☆420Updated last month
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆152Updated 2 months ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆217Updated 5 years ago
- ☆136Updated 3 years ago
- Static Binary Instrumentation tool for Windows x64 executables☆202Updated last week
- Windows Kernel Programming☆128Updated 5 years ago
- Research on Windows Kernel Executive Callback Objects☆286Updated 5 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆140Updated 6 years ago
- awesome windbg extensions☆328Updated 6 years ago
- Canadian Furious Beaver is a ProcMon-style tool designed only for capturing IRPs sent to any Windows driver.☆318Updated last year
- Named pipe I/O ETW provider for Windows☆70Updated 4 years ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆297Updated last year
- Hyper-V scripts☆122Updated last year
- View ETW Provider manifest☆482Updated 6 months ago
- Document ETW providers☆231Updated 5 years ago
- Monitor activity of any driver☆335Updated 4 years ago
- API Set Viewer☆89Updated 3 months ago