goldshtn / etraceView external linksLinks
Command-line tool for ETW tracing on files and real-time events
☆148Feb 27, 2019Updated 6 years ago
Alternatives and similar repositories for etrace
Users that are interested in etrace are comparing it to the libraries listed below
Sorting:
- Collect, aggregate, and display live stack traces for ETW events, including CPU sampling, of native and .NET processes.☆53Dec 21, 2019Updated 6 years ago
- Write minidumps of .NET processes with full memory, only CLR heaps, or no memory at all☆223Mar 15, 2019Updated 6 years ago
- Command-line environment a-la WinDbg for executing SOS commands without having SOS available.☆96Jun 22, 2022Updated 3 years ago
- Command line tracing tool for Windows, based on ETW.☆689Oct 15, 2025Updated 4 months ago
- Microsoft Windows real time file integrity monitoring and filtering using minifilter technology, this is was my university final project☆11Oct 17, 2014Updated 11 years ago
- Ruxcon2016 POC Code☆141Nov 21, 2016Updated 9 years ago
- .NET library for logging data via EventSource/ETW☆88Nov 28, 2022Updated 3 years ago
- Various libraries focused on examining/parsing NTFS-specific structures☆16Oct 25, 2015Updated 10 years ago
- ☆16Nov 10, 2015Updated 10 years ago
- My solutions for random crackmes and other challenges☆12Dec 23, 2019Updated 6 years ago
- A system call tracer☆10Sep 22, 2014Updated 11 years ago
- ☆14Feb 27, 2017Updated 8 years ago
- PE/PE +(64bit) Viewer (Qt 5.8)☆10Aug 3, 2018Updated 7 years ago
- RunPE dump - I wrote this to have better control over the analysis of malwares. I can stop and analysis malware when it uses some of the …☆10Jul 1, 2015Updated 10 years ago
- Event Tracing for Windows Custom Events☆21Jan 28, 2015Updated 11 years ago
- pass game protect☆12Apr 26, 2014Updated 11 years ago
- Demos presented on Hackerfest 2015☆14Nov 9, 2015Updated 10 years ago
- a method for undetectable breakpoints in 32-bit Windows programs☆13May 15, 2014Updated 11 years ago
- ☆10Mar 30, 2016Updated 9 years ago
- Memory management is one of the most important parts of the operating system. KSM (Kernel Samepage Merging) in Linux kernel is a kind of…☆13Apr 8, 2018Updated 7 years ago
- A WDM Windows driver to issue IO to storage devices with asynchronous multithreaded processing☆21Aug 28, 2016Updated 9 years ago
- ☆30May 23, 2017Updated 8 years ago
- A driverless driver that is supposed to be manually mapped, usually by using TDL exploit. The driver shows how to read/write to any proce…☆22Oct 27, 2017Updated 8 years ago
- KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.☆750Dec 15, 2025Updated 2 months ago
- ☆13Jun 20, 2013Updated 12 years ago
- rp++ is a full-cpp written tool that aims to find ROP sequences in PE/Elf/Mach-O x86/x64 binaries. It is open-source and has been tested …☆11Apr 2, 2016Updated 9 years ago
- ☆13Jul 31, 2016Updated 9 years ago
- Framework for vulnerability fuzzing and reverse-engineering tool development.☆23Jul 25, 2023Updated 2 years ago
- Dump and analyze .Net applications memory ( a gui for WinDbg and ClrMd )☆710Jun 25, 2020Updated 5 years ago
- AllMemPro☆46Jan 15, 2018Updated 8 years ago
- A collection of Yara rules I have created so far☆16Oct 26, 2020Updated 5 years ago
- 使用python加密so,C动态解密调用☆17Apr 27, 2017Updated 8 years ago
- Hidden monitoring and blocking Android apps☆10May 2, 2017Updated 8 years ago
- ☆15Jul 22, 2024Updated last year
- Example library for how to dynamically/statically hook/intercept unmanaged functions and APIs☆13Nov 9, 2022Updated 3 years ago
- DiskCryptor - it's a free solution that allows you to encrypt disk partitions, including system partition.☆17Dec 7, 2011Updated 14 years ago
- use crystalCPUID to identify vt-x & amd-v☆17Apr 8, 2015Updated 10 years ago
- Elevation of privilege detector based on HyperPlatform☆124Mar 5, 2017Updated 8 years ago
- Use ETW events to show what the .NET GC is doing☆114Aug 8, 2016Updated 9 years ago