WalkingCat / ExpDiff
Diff tool for comparing export tables in PE images
☆24Updated 5 years ago
Alternatives and similar repositories for ExpDiff:
Users that are interested in ExpDiff are comparing it to the libraries listed below
- WinDbg scripting language utilities.☆11Updated 4 years ago
- Full reversing of the Microsoft Auxiliary Windows API Library and ported to C☆23Updated 3 months ago
- .NET wrapper for dbghelp.dll☆21Updated 5 years ago
- Hex Studio is a work in progress Hex viewer and editor.☆22Updated 7 years ago
- Demonstrate the new FileDispositionInfoEx behavior☆14Updated 7 years ago
- An alternative tool to Sysinternals WinObj tool (nicer icons!)☆35Updated 6 years ago
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆19Updated last year
- The project is a demo solution for one of the anti-rootkit techniques aimed on overcoming splicers☆34Updated 8 years ago
- Diff tool for comparing symbols in PDB files☆84Updated 5 years ago
- Event Tracing for Windows Custom Events☆21Updated 10 years ago
- Headers for linking your software with ntdll.dll☆15Updated 4 years ago
- Managed wrappers around the Windows API and some Native API☆34Updated 6 years ago
- User-mode program parsing logs created by HyperPlatform☆18Updated 8 years ago
- Provides a way which you can load a .NET dll/exe from disk, modify/inject IL, and then run the assembly all in memory without modifying t…☆30Updated 7 years ago
- Simple error lookup for Win32 and NTSTATUS errors☆18Updated 6 years ago
- Static library and headers for linking your software with ntdll.dll☆32Updated 5 years ago
- ☆18Updated 5 years ago
- Portable Executable parsing library, used by PEExplorer. Also available as a nuget package☆36Updated 7 years ago
- Microsoft Edge Microsoft Edge主页算法☆18Updated 5 years ago
- A Windows native DLL injection library written in C# that supports several methods of injection.☆13Updated 6 years ago
- Notes my learning steps about Windows-NT☆23Updated 7 years ago
- DotNetPluginCS based on:☆20Updated 3 weeks ago
- Windows kernel-mode callbacks tutorial driver☆47Updated 8 years ago
- Show Window Stations, Desktops and top level windows☆15Updated last year
- Win32 memory leak detector with ETW☆41Updated 7 years ago
- Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loadi…☆16Updated 7 years ago
- ☆16Updated 7 years ago
- Services and Drivers control application☆18Updated 7 years ago
- User-mode process cross-checking utility intended to detect naive malware hiding itself by hooking IAT/EAT.☆19Updated 9 years ago
- Windows hidden thread suspend POC with code injection☆12Updated 7 years ago