jpassing / ntrace
NTrace -- a function boundary tracing tool for Windows user and kernel mode
☆22Updated 11 years ago
Alternatives and similar repositories for ntrace:
Users that are interested in ntrace are comparing it to the libraries listed below
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆20Updated last year
- An alternative tool to Sysinternals WinObj tool (nicer icons!)☆36Updated 6 years ago
- Event Tracing for Windows Custom Events☆21Updated 10 years ago
- Notes my learning steps about Windows-NT☆23Updated 7 years ago
- User-mode program parsing logs created by HyperPlatform☆18Updated 8 years ago
- Simple error lookup for Win32 and NTSTATUS errors☆19Updated 6 years ago
- penter hook example and driver time recorder☆31Updated 7 years ago
- My commands and scripts extending WinDbg☆33Updated 2 weeks ago
- Full reversing of the Microsoft Auxiliary Windows API Library and ported to C☆23Updated 3 months ago
- Portable Executable parsing library, used by PEExplorer. Also available as a nuget package☆36Updated 7 years ago
- INF Studio for easier working with driver installation files☆37Updated last year
- use crystalCPUID to identify vt-x & amd-v☆16Updated 10 years ago
- Demonstrate the new FileDispositionInfoEx behavior☆14Updated 7 years ago
- Static library and headers for linking your software with ntdll.dll☆32Updated 5 years ago
- WinDbg scripting language utilities.☆11Updated 4 years ago
- Lists work items being queued currently.☆13Updated 9 years ago
- PowerShell interpreter for unmanaged (non CLI) C++ projects☆16Updated 7 years ago
- Decompile an x86 exe, and read PE infos.☆19Updated 6 years ago
- Windows NT port of 'Main is usually a function. So then when is it not?'☆25Updated last year
- A tool to investigate the Windows device manager☆14Updated 6 years ago
- ☆21Updated 7 years ago
- ☆13Updated 9 years ago
- ☆46Updated 4 months ago
- Scripts to prepare Windows system for debugging.☆30Updated 4 years ago
- Diff tool for comparing export tables in PE images☆24Updated 5 years ago
- The internal Windows structures hack to create the in-process private ETW session☆13Updated 8 years ago
- Hex Studio is a work in progress Hex viewer and editor.☆23Updated 7 years ago
- simple plugin for lastest olly versions to display the callstack☆16Updated 11 years ago
- A drop-in replacement for the C++ STL for kernel mode Windows drivers. The goal is to have implementations for things like the standard a…☆31Updated 8 years ago
- just an lite AntiRootkit for interesting☆23Updated 9 years ago