microsoft / WinDbg-Samples
Sample extensions, scripts, and API uses for WinDbg.
☆722Updated 3 months ago
Related projects ⓘ
Alternatives and complementary repositories for WinDbg-Samples
- awesome windbg extensions☆313Updated 5 years ago
- KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.☆610Updated last week
- Windows 10 System Programming book samples☆408Updated 5 months ago
- My personal cheat sheet for using WinDbg for kernel debugging☆387Updated last month
- PDB Downloader - An easier way to download Microsoft's public symbols for Libraries and Executables.☆291Updated 8 years ago
- A bunch of JavaScript extensions for WinDbg.☆320Updated 3 years ago
- WinDBG Anti-RootKit Extension☆615Updated 4 years ago
- The Windows Kernel Programming book samples☆611Updated last year
- A PowerShell front-end for the Windows debugger engine.☆675Updated 7 months ago
- Windows Object Explorer 64-bit☆1,648Updated last month
- Public contributions for win32 API documentation☆397Updated this week
- Native API header files for the System Informer project.☆1,049Updated 2 months ago
- Principled, lightweight C/C++ PE parser☆801Updated 5 months ago
- This is a repo for small, useful scripts and extensions☆240Updated last year
- Detours with just single dependency - NTDLL☆612Updated 2 years ago
- pdbex is a utility for reconstructing structures and unions from the PDB into compilable C headers☆823Updated 2 months ago
- The official Windows Driver Kit DDI reference documentation sources☆249Updated this week
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆928Updated last year
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl☆1,117Updated 2 weeks ago
- Source code for File Test - Interactive File System Test Tool☆260Updated last week
- DEFCON 27 workshop - Modern Debugging with WinDbg Preview☆708Updated 2 weeks ago
- VirtualKD-Redux - A revival and modernization of VirtualKD☆820Updated 4 months ago
- Monitor activity of any driver☆328Updated 4 years ago
- Windows NT Syscall tables☆1,156Updated 2 weeks ago
- PDBRipper is a utility for extract an information from PDB-files.☆801Updated this week
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆368Updated 8 months ago
- Windows System Explorer☆838Updated 5 months ago
- Process Monitor X v2☆589Updated 9 months ago
- Samples for the book Windows Kernel Programming, 2nd edition☆293Updated 3 months ago
- Helper library for x86 programs that runs under WOW64 layer on x64 versions of Microsoft Windows operating systems.☆938Updated last year