hfiref0x / SXSEXPLinks
Expand compressed files from WinSxS folder
☆165Updated 2 months ago
Alternatives and similar repositories for SXSEXP
Users that are interested in SXSEXP are comparing it to the libraries listed below
Sorting:
- A GUI version of the classic PoolMon tool☆117Updated 7 years ago
- Explore Kernel Objects on Windows☆226Updated 5 months ago
- Run any executable as SYSTEM account (no service required)☆140Updated last year
- Kernel Pool Monitor☆127Updated 3 years ago
- A collection of free miscellaneous Windows tools☆140Updated 2 months ago
- Run executables in an AppContainer☆122Updated 6 years ago
- WNF Utilities 4 Newbies (WNFUN)☆97Updated 6 years ago
- Named pipe I/O ETW provider for Windows☆71Updated 5 years ago
- A global injection and hooking example☆152Updated last year
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆146Updated 6 years ago
- ☆33Updated 7 years ago
- A local copy of Alex Ionescu's seemingly abandoned native-nt-toolkit project containing knowledge inherited from the ReactOS project.☆54Updated 5 years ago
- A tool to extract Windows Manifest files that can be found in the WinSxS folder☆27Updated 2 months ago
- Enhanced version of the GFlags tool☆83Updated 6 years ago
- Source code for File Test - Interactive File System Test Tool☆295Updated last month
- ☆108Updated 7 years ago
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆88Updated 9 years ago
- Analysis and manipulation of extended attribute ($EA) on NTFS☆38Updated 10 years ago
- File system minifilter driver for Windows to block symbolic link attacks.☆52Updated 4 years ago
- The history of Windows Internals via symbols.☆180Updated 3 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆143Updated 6 years ago
- Windows 10 PE image loader (LDR) NTDLL component toolbox☆49Updated 5 years ago
- ☆131Updated last year
- API Set Viewer☆91Updated 8 months ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆147Updated 5 years ago
- Print compiler information stored in Rich Header of PE executables.☆140Updated this week
- (unofficial) Hyper-V® Development Kit☆226Updated last year
- VrtuleTree is a tool that displays information about driver and device objects present in the system and relations between them. Its func…☆60Updated 4 years ago
- Launch Windows executables & COM servers in a sandboxed or elevated environment.