jayo78 / win-api-monitorLinks
A windows userland executable monitor
☆21Updated 4 years ago
Alternatives and similar repositories for win-api-monitor
Users that are interested in win-api-monitor are comparing it to the libraries listed below
Sorting:
- An API Monitor based on Instrumentation☆43Updated 7 years ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆44Updated 2 years ago
- Native API header files for the Process Hacker project (nightly).☆26Updated 2 weeks ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆43Updated 3 years ago
- Analysing and defeating PatchGuard universally☆35Updated 4 years ago
- idenLib (Library Function Identification) plugin for x32dbg☆42Updated 6 years ago
- Static Library For Windows Drivers☆35Updated 5 months ago
- Windows Server 2K3 NT 5☆12Updated 4 years ago
- Lightweight WINAPI tracing with Pin☆27Updated 5 years ago
- Windows Console Monitor☆34Updated 6 years ago
- A way to detect DBI frameworks, Debuggers and VMs.☆22Updated 4 years ago
- ☆48Updated 6 years ago
- Example of real-time Windows ETW packet capture session☆53Updated 8 years ago
- unicorn emulator for x64dbg☆34Updated 7 years ago
- Taking advantage of CRT initialization, to get away with hooking protected applications☆47Updated 2 years ago
- reveal and detect of common hooks under win32☆13Updated 4 years ago
- basic dll injector using Qt☆20Updated 8 years ago
- Wow64 syscall hook☆40Updated 8 years ago
- Fork of Scylla with additional fixes and Python bindings.☆44Updated last year
- A stack and register based virtual machine which can compile and execute arbitrary code in runtime☆44Updated 4 months ago
- Standalone program to download PDB Symbol files for debugging without WDK☆76Updated 6 years ago
- Runtime smm module loader☆34Updated 2 years ago
- A simple example how to decrypt kernel debugger data block☆29Updated 4 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆53Updated last year
- Some eternal WIP stuff :)☆18Updated 4 months ago
- A simple library which provides a way to read and write the memory of other processes☆51Updated 7 years ago
- Remote memory library in C++17.☆31Updated 7 years ago
- Plain project for usege with github/zer0mem/common.git☆48Updated 11 years ago
- ☆37Updated 6 years ago
- A simple ransomware defender.It uses minifilter to filt "rewrite" and "delete" events in kernel.And it handles event in user mode.☆27Updated 6 years ago