anhkgg / awesome-windbg-extensionsLinks
awesome windbg extensions
☆331Updated 6 years ago
Alternatives and similar repositories for awesome-windbg-extensions
Users that are interested in awesome-windbg-extensions are comparing it to the libraries listed below
Sorting:
- My personal cheat sheet for using WinDbg for kernel debugging☆420Updated last month
- A bunch of JavaScript extensions for WinDbg.☆340Updated 6 months ago
- Useful scripts for WinDbg using the debugger data model☆413Updated last year
- Toy scripts for playing with WinDbg JS API☆228Updated 10 months ago
- Sample extensions, scripts, and API uses for WinDbg.☆763Updated last month
- Examples of leaking Kernel Mode information from User Mode on Windows☆604Updated 7 years ago
- XNTSV program for detailed viewing of system structures for Windows.☆461Updated this week
- Source code for File Test - Interactive File System Test Tool☆284Updated 2 months ago
- DEFCON 27 workshop - Modern Debugging with WinDbg Preview☆723Updated 7 months ago
- Windows NT x64 syscall fuzzer☆607Updated last year
- Process Monitor X v2☆613Updated last year
- Research on Windows Kernel Executive Callback Objects☆287Updated 5 years ago
- The Windows Library for Intel Process Trace (WinIPT) is a project that leverages the new Intel Processor Trace functionality exposed by W…☆383Updated 2 years ago
- Extended Process Monitor-like tool based on Event Tracing for Windows☆472Updated 5 years ago
- WinDBG Anti-RootKit Extension☆630Updated 4 years ago
- Monitor activity of any driver☆336Updated 4 years ago
- 0CCh Windbg extension: include some useful commands☆111Updated last year
- Time Travel Debugging IDA plugin☆585Updated 11 months ago
- This is a collection of interesting codes about Windows Process creation.☆233Updated last year
- A Windows kernel dump C++ parser library with Python 3 bindings.☆199Updated 10 months ago
- Detours with just single dependency - NTDLL☆644Updated 2 years ago
- Samples for the book Windows Kernel Programming, 2nd edition☆338Updated 5 months ago
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆387Updated 5 months ago
- VirtualKD-Redux - A revival and modernization of VirtualKD☆894Updated 11 months ago
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+☆741Updated 7 years ago
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆976Updated last year
- Canadian Furious Beaver is a ProcMon-style tool designed only for capturing IRPs sent to any Windows driver.☆321Updated last year
- This driver implements the Intel Processor Trace functionality in Intel Skylake architecture for Microsoft Windows☆450Updated 7 years ago
- open source process monitor☆274Updated last month
- View ETW Provider manifest☆489Updated 7 months ago