lowleveldesign / comonLinks
A WinDbg extension to trace COM interactions
☆114Updated last year
Alternatives and similar repositories for comon
Users that are interested in comon are comparing it to the libraries listed below
Sorting:
- API Set Viewer☆89Updated 4 months ago
- View handles and object for each object type☆64Updated 5 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆143Updated 6 years ago
- Explore Job Objects on a Windows system☆83Updated 5 years ago
- Documenting system information classes and their uses☆51Updated 3 years ago
- WinDbg installer/updater☆41Updated last year
- An example of a client and server using Windows' ALPC functions to send and receive data.☆96Updated 4 months ago
- Named pipe I/O ETW provider for Windows☆70Updated 4 years ago
- Example of building an application verifer DLL☆46Updated last year
- Trace events in real time sessions☆45Updated last year
- Some Code Samples for Windows based Inter-Process-Communication (IPC)☆175Updated last year
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆84Updated 4 years ago
- Miscellaneous Code and Docs☆81Updated last year
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆87Updated 9 years ago
- Run any executable as SYSTEM account (no service required)☆130Updated last year
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆139Updated 2 years ago
- Windows kernel PDB data parsed into YAML☆36Updated 6 months ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆199Updated 10 months ago
- ☆61Updated last year
- C++ library for low-level Windows development☆74Updated last year
- File system minifilter driver for Windows to block symbolic link attacks.☆51Updated 4 years ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆35Updated 4 years ago
- ☆143Updated last year
- Log ALPC activity☆84Updated last year
- Resolve DOS MZ executable symbols at runtime☆95Updated 3 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆108Updated 5 years ago
- ☆46Updated 2 weeks ago
- Yet another PE Viewer☆142Updated 2 years ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆143Updated 4 years ago
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆153Updated 2 months ago