prash-wghats / Dtrace-ETWLinks
DTrace for Windows in userspace; Frontend to ETW
☆27Updated 2 years ago
Alternatives and similar repositories for Dtrace-ETW
Users that are interested in Dtrace-ETW are comparing it to the libraries listed below
Sorting:
- Trace events in real time sessions☆45Updated 2 years ago
- Code Integrity Violation Spotter☆17Updated last year
- Dump PDB Symbols including support for Bochs Debugging Format (with wine support)☆15Updated 2 years ago
- Static library and headers for linking your software with ntdll.dll☆35Updated 5 years ago
- c++ implementation of windows heavens gate☆72Updated 4 years ago
- ☆56Updated 4 months ago
- ☆32Updated 4 years ago
- Monitor ETW events for Windows process mitigation policies, with stack traces☆31Updated 2 years ago
- Library for using direct system calls☆36Updated 7 months ago
- ☆12Updated 6 years ago
- Static Library For Windows Drivers☆36Updated 3 weeks ago
- Lightweight Portable Executable parsing library and a demo peParser application.☆80Updated 2 years ago
- Remote memory library in C++17.☆33Updated 7 years ago
- Load Dll into Kernel space☆38Updated 3 years ago
- A driver to intercept low level windows events☆64Updated 5 years ago
- View handles and object for each object type☆64Updated 6 years ago
- A working version of this tutorial: https://docs.microsoft.com/en-us/windows/desktop/rpc/tutorial☆16Updated 6 years ago
- Basic utilities for executing, reading and writing 64-bit data in a 32-bit WoW64 process☆17Updated 3 years ago
- Use NtSetInformationThread(ThreadBreakOnTermination) for anti-debugging☆12Updated 6 years ago
- Call 32bit NtDLL API directly from WoW64 Layer☆60Updated 4 years ago
- Detects if a Kernel mode debugger is active by reading the value of KUSER_SHARED_DATA.KdDebuggerEnabled. It is a high level and portable …☆23Updated 8 years ago
- Protected Process Light Library☆18Updated 5 years ago
- Windows CIFS/SMB packet generation and SMB networking library☆11Updated 5 years ago
- Driver demonstrating how to register a DPC to asynchronously wait on an object☆50Updated 4 years ago
- Various WinDbg extensions and scripts☆33Updated 7 years ago
- Windows Sandbox Framework☆40Updated 3 years ago
- A research project about Windows notify routines.☆37Updated 5 years ago
- C++ library for low-level Windows development☆79Updated last year
- Some crazy PE executables protection kernel driver☆19Updated 5 years ago
- Standalone program to download PDB Symbol files for debugging without WDK☆79Updated 6 years ago