shareef12 / libpdb
Parser for Microsoft Program Database (PDB) files
☆74Updated 4 years ago
Alternatives and similar repositories for libpdb:
Users that are interested in libpdb are comparing it to the libraries listed below
- Fetch PDB symbols directly from Microsoft's symbol servers☆41Updated 3 years ago
- Collection of obfuscation, tamper-proofing, and watermarking algorithms targeting LLVM IR.☆71Updated 5 years ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆62Updated last year
- Resolve DOS MZ executable symbols at runtime☆93Updated 3 years ago
- A repository of IDA Databases and Binaries used for the analysis of popular commercial virtual-machine obfuscators☆67Updated 2 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆103Updated 4 years ago
- IDA Plugin that fills in missing indirect CALL & JMP target information☆120Updated this week
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆76Updated 4 years ago
- ☆93Updated 7 years ago
- A simple x86_64 AMD-v hypervisor type-2 Programmed with C++, with soon to be added syscall hooks. [W.I.P]☆93Updated last year
- ☆67Updated 4 years ago
- A small tool for rapid enumeration of CPUID, and MSR fields.☆18Updated 11 months ago
- This is the PoC of a dynamic lifter and deobfuscator with collecting trace.☆35Updated last year
- ☆90Updated 4 years ago
- VM devirtualization PoC based on AsmJit and llvm☆107Updated 3 years ago
- Documenting system information classes and their uses☆51Updated 3 years ago
- Tool to dump UEFI runtime drivers implementing runtime services for Windows☆95Updated 4 years ago
- A simple and heavily documented series of test hypervisors built for 64-bit Windows 10 systems running under Intel's VT-x☆29Updated 4 years ago
- x86-64 user mode emulation using Zydis☆40Updated last week
- clone of armadillo patched for windows☆47Updated 2 months ago
- CMake template for a basic EFI application/bootkit. This library is header-only, there is no EDK2 runtime!).☆77Updated 2 years ago
- Header only wrapper around Hex-Rays API in C++20.☆154Updated 3 weeks ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆139Updated 5 years ago
- An example of a client and server using Windows' ALPC functions to send and receive data.☆90Updated 4 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆35Updated 6 months ago
- Symbolic expression simplifier used across VTIL toolchain. Moved into -->☆24Updated 4 years ago
- IA32-doc is a project which aims to put as many definitions from the Intel Manual into machine-processable format as possible☆16Updated 2 years ago
- Bypassing code hooks detection in modern anti-rootkits via building faked PTE entries.☆75Updated 13 years ago
- Visual Studio Project example for using Microsoft's STL in WDM (Windows Kernel-mode Driver)☆26Updated 3 years ago
- A library for intel VT-x hypervisor functionality supporting EPT shadowing.☆48Updated 3 years ago