kusano / ntfsdump
Extract files from NTFS Volume
☆32Updated 3 years ago
Alternatives and similar repositories for ntfsdump:
Users that are interested in ntfsdump are comparing it to the libraries listed below
- Library for Windows XML Event Log (EVTX) data types☆17Updated 4 months ago
- MSTSC Packet Dump Utility☆28Updated 2 years ago
- Dumps information about all the callback objects found in a dump file and the functions registered for them☆35Updated 4 years ago
- Windows x64 Process Scanner to detect application compatability shims☆36Updated 6 years ago
- Automatically exported from code.google.com/p/windbgshark☆11Updated 9 years ago
- OLE Structured Storage Tool☆27Updated 4 months ago
- Blog posts☆30Updated 4 years ago
- Rekall Memory Forensic Framework☆30Updated 5 years ago
- Yet another Windows DLL injector.☆38Updated 3 years ago
- ☆22Updated 3 years ago
- Not Another Code Injection Toolkit☆16Updated 3 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆29Updated 7 years ago
- A ready-made template for a project based on libpeconv.☆43Updated 3 months ago
- Headers for linking your software with ntdll.dll☆15Updated 4 years ago
- Data and structures regarding the research done on WdFilter☆12Updated 4 years ago
- Windows Inline function hooking library targeted at MSVC☆26Updated 8 years ago
- collection of links related to using and improving windbg☆19Updated 6 years ago
- ☆31Updated 4 years ago
- Call 32bit NtDLL API directly from WoW64 Layer☆60Updated 4 years ago
- Demos and presentation from SECArmy Village Grayhat 2020☆36Updated last year
- ☆24Updated 5 years ago
- ☆14Updated 7 years ago
- A POC for Windows Extension Host hooking☆22Updated 5 years ago
- Uses WMI Event Win32_ModuleLoadTrace to monitor module loading. Provides filters, and detailed data. Has an option to monitor for CLR Inj…☆39Updated 5 years ago
- An IDA plugin to deal with Event Tracing for Windows (ETW)☆51Updated 2 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 6 years ago
- A windbg extension for ASLR/DEP/SafeSEH check☆25Updated 6 years ago
- Static library and headers for linking your software with ntdll.dll☆32Updated 5 years ago
- CAPE monitor DLLs☆39Updated 5 years ago
- Use WinDBG to trace the Windows API calls of any Portable Executable file☆30Updated 7 years ago