anhkgg / awesome-windbg-extensions
awesome windbg extensions
☆314Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for awesome-windbg-extensions
- My personal cheat sheet for using WinDbg for kernel debugging☆388Updated last month
- Sample extensions, scripts, and API uses for WinDbg.☆724Updated 3 months ago
- A bunch of JavaScript extensions for WinDbg.☆320Updated 3 years ago
- Toy scripts for playing with WinDbg JS API☆220Updated 4 months ago
- PDB Downloader - An easier way to download Microsoft's public symbols for Libraries and Executables.☆291Updated 8 years ago
- Useful scripts for WinDbg using the debugger data model☆389Updated 7 months ago
- Monitor activity of any driver☆328Updated 4 years ago
- Examples of leaking Kernel Mode information from User Mode on Windows☆581Updated 7 years ago
- Source code for File Test - Interactive File System Test Tool☆260Updated last week
- XNTSV program for detailed viewing of system structures for Windows.☆446Updated this week
- Samples for the book Windows Kernel Programming, 2nd edition☆294Updated this week
- Detours with just single dependency - NTDLL☆612Updated 2 years ago
- 0CCh Windbg extension: include some useful commands☆109Updated last year
- Extended Process Monitor-like tool based on Event Tracing for Windows☆463Updated 4 years ago
- This is a collection of interesting codes about Windows Process creation.☆230Updated 10 months ago
- Windows NT x64 syscall fuzzer☆590Updated last year
- Process Monitor X v2☆590Updated 10 months ago
- The Windows Kernel Programming book samples☆611Updated last year
- Research on Windows Kernel Executive Callback Objects☆278Updated 4 years ago
- View ETW Provider manifest☆433Updated 3 weeks ago
- VirtualKD-Redux - A revival and modernization of VirtualKD☆821Updated 5 months ago
- DEFCON 27 workshop - Modern Debugging with WinDbg Preview☆709Updated 3 weeks ago
- WinDBG Anti-RootKit Extension☆615Updated 4 years ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆193Updated 4 months ago
- This is a repo for small, useful scripts and extensions☆241Updated last year
- C++ STL in the Windows Kernel with C++ Exception Support☆393Updated last year
- Portable Executable Explorer version 2☆409Updated 7 months ago
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+☆721Updated 7 years ago
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆367Updated 8 months ago
- My notes while studying Windows internals☆400Updated this week