rogerorr / NtTraceLinks
An strace-like program for the Windows 'native' API
☆366Updated this week
Alternatives and similar repositories for NtTrace
Users that are interested in NtTrace are comparing it to the libraries listed below
Sorting:
- open source process monitor☆303Updated 9 months ago
- A Windows PE format file loader☆153Updated 7 years ago
- Source code for File Test - Interactive File System Test Tool☆302Updated 5 months ago
- Cross-platform tool that allows browsing and extracting C and C++ type declarations from PDB files.☆357Updated last year
- A modern c++ implementation of windows heavens gate☆244Updated 5 years ago
- Detours with just single dependency - NTDLL☆671Updated 2 months ago
- C++ Exceptions in Windows Drivers☆221Updated 5 years ago
- PDB Downloader - An easier way to download Microsoft's public symbols for Libraries and Executables.☆304Updated 9 years ago
- A Cross-Platform C++ parser library for Windows user minidumps with Python 3 bindings.☆226Updated 4 months ago
- A header-only C++ library for accessing files in COFF binary format. (Including Windows PE/PE+ formats)☆212Updated 5 months ago
- C++ STL in the Windows Kernel with C++ Exception Support☆434Updated 2 years ago
- Collection of undocumented Windows API declarations.☆341Updated 3 weeks ago
- A bunch of parsers for PE and PDB formats in C++☆265Updated last year
- Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers☆378Updated this week
- Print compiler information stored in Rich Header of PE executables.☆146Updated last week
- COFF and Portable Executable format described using standard C++ with no dependencies.☆338Updated 9 months ago
- ☆176Updated last year
- pdbex is a utility for reconstructing structures and unions from the PDB into compilable C headers☆888Updated 7 months ago
- awesome windbg extensions☆355Updated 6 years ago
- My personal cheat sheet for using WinDbg for kernel debugging☆452Updated 9 months ago
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆406Updated last year
- Windows NT x64 syscall fuzzer☆632Updated last month
- Explore Kernel Objects on Windows☆245Updated 10 months ago
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆149Updated 6 years ago
- Process Monitor X v2☆647Updated 2 years ago
- An IDA Plugin that help analyzing module that use COM☆230Updated 4 months ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆213Updated 4 months ago
- CMake module for building drivers with Windows Development Kit (WDK)☆324Updated 6 months ago
- Research on Windows Kernel Executive Callback Objects☆315Updated 5 years ago
- A DTrace on Windows Reimplementation☆369Updated last week