horsicq / xntsvLinks
XNTSV program for detailed viewing of system structures for Windows.
☆468Updated this week
Alternatives and similar repositories for xntsv
Users that are interested in xntsv are comparing it to the libraries listed below
Sorting:
- Debug Child Process Tool (auto attach)☆319Updated 2 years ago
- Opcode calculator / ASM calculator☆402Updated this week
- Strings plugin for x64dbg☆239Updated this week
- My personal cheat sheet for using WinDbg for kernel debugging☆451Updated 9 months ago
- PDBRipper is a utility for extract an information from PDB-files.☆875Updated this week
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆219Updated 3 years ago
- CFB is a ProcMon-style tool designed to assist capturing IRPs sent to Windows drivers.☆333Updated last year
- A collection of x64dbg scripts. Feel free to submit a pull request to add your script.☆535Updated last year
- Official x64dbg plugin for IDA Pro.☆547Updated last year
- This project provides a collection of Microsoft Windows kernel structures, unions and enumerations. Most of them are not officially docum…☆231Updated 2 months ago
- Process Monitor X v2☆645Updated 2 years ago
- Linker/Compiler/Tool detector for Windows, Linux and MacOS.☆571Updated this week
- My notes while studying Windows internals☆446Updated last year
- x64dbg utility for linker map files, diff files, PEiD/IDA signatures, and code signature generation.☆309Updated 5 years ago
- Windows NT x64 syscall fuzzer☆631Updated 2 weeks ago
- A DTrace on Windows Reimplementation☆369Updated 3 months ago
- x64dbg plugin to set breakpoints automatically to Win32/64 APIs☆182Updated 8 years ago
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆638Updated 11 months ago
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆406Updated last year
- An IDA Plugin that help analyzing module that use COM☆230Updated 3 months ago
- Portable Executable Explorer version 2☆456Updated last year
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆410Updated 6 months ago
- Advanced driver monitoring utility.☆217Updated 3 years ago
- A library to develop kernel level Windows payloads for post HVCI era☆476Updated 4 years ago
- open source process monitor☆300Updated 9 months ago
- Persistent IAT hooking application - based on bearparser☆264Updated 3 years ago
- Portable Executable parsing library (from PE-bear)☆659Updated 3 months ago
- Plugin for x64dbg Linker/Compiler/Tool detector.☆170Updated last week
- A collection of various vulnerable (mostly physical memory exposing) drivers.☆432Updated 3 years ago
- Automating x64dbg using Python, Snapshots:☆1,501Updated 2 years ago