hfiref0x / SXSEXP
Expand compressed files from WinSxS folder
☆153Updated 7 months ago
Alternatives and similar repositories for SXSEXP:
Users that are interested in SXSEXP are comparing it to the libraries listed below
- A GUI version of the classic PoolMon tool☆112Updated 6 years ago
- Run any executable as SYSTEM account (no service required)☆126Updated 9 months ago
- Kernel Pool Monitor☆121Updated 2 years ago
- Enhanced version of the GFlags tool☆82Updated 5 years ago
- WNF Utilities 4 Newbies (WNFUN)☆93Updated 6 years ago
- Named pipe I/O ETW provider for Windows☆69Updated 4 years ago
- Source code for File Test - Interactive File System Test Tool☆277Updated 3 weeks ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆130Updated 4 years ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆286Updated 9 months ago
- ☆157Updated 4 months ago
- Explore Kernel Objects on Windows☆204Updated last year
- Analysis and manipulation of extended attribute ($EA) on NTFS☆38Updated 9 years ago
- Hyper-V Research is trendy now☆177Updated 9 months ago
- Run executables in an AppContainer☆119Updated 6 years ago
- A collection of free miscellaneous Windows tools☆129Updated 5 months ago
- PE Viewer☆165Updated last month
- Hyper-V Research is trendy now☆158Updated this week
- A command tree based on commands and extensions for Windows Kernel Debugging.☆107Updated 4 years ago
- Extract Windows Defender database from vdm files and unpack it☆435Updated 5 years ago
- Run the program with the specified permission level (C++20 required)☆337Updated this week
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆139Updated 5 years ago
- A local copy of Alex Ionescu's seemingly abandoned native-nt-toolkit project containing knowledge inherited from the ReactOS project.☆54Updated 5 years ago
- Monitor activity of any driver☆334Updated 4 years ago
- ☆124Updated 4 months ago
- Extract CAB+PSF update for Windows☆81Updated 9 months ago
- Authenticode Hash Calculator for PE32/PE32+ files☆107Updated 11 months ago
- (unofficial) Hyper-V® Development Kit☆217Updated last year
- The history of Windows Internals via symbols.☆178Updated 3 years ago
- Simple as possible tool to extract almost every AutoIT script from compiled programs, even firmly secured. Please check the README.md to …☆56Updated last year
- Recon 2015 Presentation from Alex Ionescu☆234Updated 9 years ago