prekageo / winhook
☆51Updated 12 years ago
Related projects ⓘ
Alternatives and complementary repositories for winhook
- Helper utility for debugging windows PE/PE+ loader.☆50Updated 9 years ago
- Plugin for Process Hacker 2 ( https://github.com/processhacker2 ), displays system hooks and able to unhook too.☆49Updated 6 years ago
- My commands and scripts extending WinDbg☆28Updated 2 months ago
- This repository contains some tools that I have written in the past☆26Updated 11 months ago
- Library for kernel and user mode splicing for Windows (x86 and x64).☆62Updated 12 years ago
- Debugger extension for the Debugging Tools for Windows (WinDbg, KD, CDB, NTSD).☆68Updated 7 years ago
- just an lite AntiRootkit for interesting☆23Updated 8 years ago
- Analyze PatchGuard☆53Updated 6 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Updated 4 years ago
- GetHooks is a program designed for the passive detection and monitoring of hooks from a limited user account.☆61Updated 3 years ago
- Windows Hypervisor Platform client☆29Updated 6 years ago
- Decrement Windows Kernel for fun and profit☆38Updated 6 years ago
- WinDbg debugger extension library providing various tools to analyse, dump and fix (restore) Microsoft Portable Executable files for both…☆81Updated 2 months ago
- ☆28Updated 9 years ago
- OpenSrc projects; common multiprojects headers store to ./Common/*category*/☆48Updated 10 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆33Updated 4 months ago
- PE file manipulation library☆74Updated 4 years ago
- Advance LPC☆59Updated 7 years ago
- Simple proof of concept code for injecting libraries on 64bit processes from a 32bit process☆93Updated 6 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆52Updated 7 months ago
- Various WinDbg extensions and scripts☆31Updated 6 years ago
- An alternative tool to Sysinternals WinObj tool (nicer icons!)☆34Updated 6 years ago
- Native win32 executables loader☆52Updated 6 years ago
- PE file manipulation library.☆63Updated 4 years ago
- Simple PE packer with RtlCompressBuffer☆21Updated 9 years ago
- A framework for KMDF-based upper filter drivers to behave as bus filters. You don't need to write WDM drivers any more!☆22Updated 2 years ago
- Example of real-time Windows ETW packet capture session☆51Updated 7 years ago
- User-mode program parsing logs created by HyperPlatform☆17Updated 8 years ago
- x64dbg stylesheet like visual studio dark theme☆41Updated 7 years ago