ernw / Windows-Insight
The content of this repository aims to assist efforts on analysing inner working principles, functionalities, and properties of the Microsoft Windows operating system. This repository stores relevant documentation as well as executable files needed for conducting analysis studies.
☆151Updated 4 years ago
Alternatives and similar repositories for Windows-Insight
Users that are interested in Windows-Insight are comparing it to the libraries listed below
Sorting:
- Documentation and supporting script sample for Windows Exploit Guard☆156Updated 3 years ago
- Mario & Luigi - Tools for sniffing Windows Named Pipes communication☆129Updated 8 years ago
- Driver Initial Reconnaissance Tool☆123Updated 5 years ago
- ☆67Updated 2 years ago
- ☆110Updated 4 years ago
- FLARE Kernel Shellcode Loader☆177Updated 6 years ago
- ☆234Updated 7 years ago
- ☆216Updated 7 years ago
- Parsers for custom malware formats ("Funky malware formats")☆96Updated 3 years ago
- Just a normal flask web app to understand win32api with code snippets and references.☆73Updated 5 years ago
- Hyper-V Research is trendy now☆178Updated last year
- Scripts for disassembling VBScript p-code in the memory to aid in exploits analysis☆85Updated 2 years ago
- Ruxcon2016 POC Code☆139Updated 8 years ago
- Pure Python parser for Application Compatibility Shim Databases (.sdb files)☆108Updated 4 years ago
- Reflective Polymorphism☆104Updated 6 years ago
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆182Updated 4 years ago
- Windows Drivers☆98Updated 6 years ago
- Tools for instrumenting Windows Defender's mpengine.dll☆295Updated 6 years ago
- A command tree based on commands and extensions for Windows Kernel Debugging.☆108Updated 4 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆136Updated 7 years ago
- A one-click tool to inject jobs into the BITS queue (Background Intelligent Transfer Service), allowing arbitrary program execution as th…☆99Updated 5 years ago
- ☆115Updated 8 years ago
- WNF Utilities 4 Newbies (WNFUN)☆94Updated 6 years ago
- Shellcode emulator written with Unicorn Framework With Process Dump Emulation Environment☆123Updated 4 years ago
- Another Repo of Malware. Enjoy. <3☆59Updated 6 years ago
- Named pipe I/O ETW provider for Windows☆70Updated 4 years ago
- PoC for persisting .NET payloads in Windows Notification Facility (WNF) state names using low-level Windows Kernel API calls.☆151Updated 5 years ago
- Smart DLL execution for malware analysis in sandbox systems☆144Updated 10 years ago
- Transfer EIP control to shellcode during malware analysis investigation☆75Updated 10 years ago
- Go Lang Portable Executable Parser☆39Updated 4 years ago