m417z / winapiexec
A small tool that allows to run WinAPI functions through command line parameters
☆183Updated 2 years ago
Alternatives and similar repositories for winapiexec:
Users that are interested in winapiexec are comparing it to the libraries listed below
- PE Viewer☆165Updated last month
- Explore Kernel Objects on Windows☆204Updated last year
- A global injection and hooking example☆135Updated last year
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆269Updated 4 months ago
- For when DLLMain is the only way☆367Updated 3 months ago
- RPC Monitor tool based on Event Tracing for Windows☆338Updated 6 months ago
- Windows System Programming Experiments☆218Updated 2 years ago
- C# Utilities for Windows Notification Facility☆128Updated 2 months ago
- ☆72Updated 7 years ago
- Advanced driver monitoring utility.☆203Updated 2 years ago
- Authenticode Hash Calculator for PE32/PE32+ files☆107Updated 11 months ago
- Enhanced version of the classic Spy++ tool☆185Updated 10 months ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆243Updated 2 years ago
- Single header version of System Informer's phnt library.☆190Updated this week
- Run Processes as PPL with ELAM☆153Updated 2 years ago
- Create file system symbolic links from low privileged user accounts within PowerShell☆92Updated 2 years ago
- myAut2Exe - The Open Source AutoIT Script Decompiler☆73Updated 7 years ago
- Patching "signtool.exe" to accept expired certificates for code-signing.☆273Updated 7 months ago
- Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers☆215Updated this week
- Generate a proxy dll for arbitrary dll☆165Updated 4 months ago
- Run any executable as SYSTEM account (no service required)☆126Updated 9 months ago
- Load a dynamic library from memory by modifying the native Windows loader☆207Updated last month
- A multiline (and ultimate) assembler (and disassembler) plugin for x64dbg and OllyDbg. A perfect tool for modifying and extending a compi…☆123Updated last month
- Yet another PE Viewer☆138Updated 2 years ago
- Controlling Windows PP(L)s☆293Updated last year
- ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detecti…☆298Updated 11 months ago
- This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret …☆238Updated last year
- Killing your preferred antimalware by abusing native symbolic links and NT paths.☆356Updated 3 years ago
- Windows Filtering Platform Explorer☆239Updated 3 weeks ago
- Replace the .txt section of the current loaded modules from \KnownDlls\ to bypass edrs☆290Updated 2 years ago