progmboy / openprocmon
open source process monitor
☆261Updated last year
Alternatives and similar repositories for openprocmon:
Users that are interested in openprocmon are comparing it to the libraries listed below
- ☆157Updated 5 months ago
- Source code for File Test - Interactive File System Test Tool☆277Updated last month
- An example of a client and server using Windows' ALPC functions to send and receive data.☆94Updated last month
- C++ Exceptions in Windows Drivers☆204Updated 4 years ago
- An strace-like program for the Windows 'native' API☆251Updated this week
- A bunch of parsers for PE and PDB formats in C++☆231Updated 9 months ago
- Samples for the book Windows Kernel Programming, 2nd edition☆325Updated 2 months ago
- C++ STL in the Windows Kernel with C++ Exception Support☆404Updated last year
- Hyper-V Research is trendy now☆158Updated this week
- A DTrace on Windows Reimplementation☆339Updated last month
- Windows NT x64 syscall fuzzer☆593Updated last year
- Detours with just single dependency - NTDLL☆618Updated 2 years ago
- The Universal C++ RunTime library, supporting kernel-mode C++ exception-handler and STL.☆399Updated 7 months ago
- Process Monitor X v2☆598Updated last year
- This program can retrieve signature information from PE files which signed by one or more certificates on Windows. Supporting multi-signe…☆99Updated 2 years ago
- Research on Windows Kernel Executive Callback Objects☆284Updated 5 years ago
- The Kernel-Mode Winsock library, supporting TCP, UDP and Unix sockets (DGRAM and STREAM).☆241Updated last month
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆134Updated 5 years ago
- Toy scripts for playing with WinDbg JS API☆223Updated 7 months ago
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆372Updated 2 months ago
- Collection of undocumented Windows API declarations.☆302Updated last month
- Use ci.dll API for validating Authenticode signature of files☆137Updated 2 years ago
- Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers☆220Updated this week
- XNTSV program for detailed viewing of system structures for Windows.☆456Updated this week
- System call hook for Windows 10 20H1☆486Updated 3 years ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆196Updated 7 months ago
- Driver Buddy Reloaded is an IDA Pro Python plugin that helps automate some tedious Windows Kernel Drivers reverse engineering tasks☆344Updated 4 months ago
- This tiny project prevents the signtool from verifing cert time validity and let you sign your bin with outdated cert without changing sy…☆228Updated 6 years ago
- Kernel Detective☆141Updated 2 years ago
- ☆125Updated 5 months ago