progmboy / openprocmonLinks
open source process monitor
☆276Updated last month
Alternatives and similar repositories for openprocmon
Users that are interested in openprocmon are comparing it to the libraries listed below
Sorting:
- An example of a client and server using Windows' ALPC functions to send and receive data.☆96Updated 4 months ago
- C++ Exceptions in Windows Drivers☆210Updated 4 years ago
- Source code for File Test - Interactive File System Test Tool☆284Updated 2 months ago
- C++ STL in the Windows Kernel with C++ Exception Support☆414Updated last year
- Collection of undocumented Windows API declarations.☆314Updated this week
- ☆165Updated 8 months ago
- Samples for the book Windows Kernel Programming, 2nd edition☆338Updated 5 months ago
- Windows Filtering Platform Explorer☆264Updated 4 months ago
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆247Updated 4 months ago
- A DTrace on Windows Reimplementation☆348Updated 4 months ago
- A Windows PE format file loader☆145Updated 7 years ago
- A bunch of parsers for PE and PDB formats in C++☆246Updated last year
- Explore Kernel Objects on Windows☆216Updated 2 months ago
- Process Monitor X v2☆614Updated last year
- Research on Windows Kernel Executive Callback Objects☆287Updated 5 years ago
- Use ci.dll API for validating Authenticode signature of files☆140Updated 3 years ago
- The Universal C++ RunTime library, supporting kernel-mode C++ exception-handler and STL.☆402Updated 10 months ago
- Detours with just single dependency - NTDLL☆644Updated 2 years ago
- System call hook for Windows 10 20H1☆493Updated 3 years ago
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆140Updated 5 years ago
- This program can retrieve signature information from PE files which signed by one or more certificates on Windows. Supporting multi-signe…☆97Updated 2 years ago
- An strace-like program for the Windows 'native' API☆265Updated last month
- Windows NT x64 syscall fuzzer☆607Updated last year
- SimpleSvmHook is a research purpose hypervisor for Windows on AMD processors.☆397Updated 4 years ago
- A global injection and hooking example☆142Updated last year
- XNTSV program for detailed viewing of system structures for Windows.☆461Updated this week
- Toy scripts for playing with WinDbg JS API☆228Updated 10 months ago
- Advanced driver monitoring utility.☆211Updated 2 years ago
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆599Updated 4 months ago
- APC Internals Research Code☆166Updated 4 years ago