sonicmouse / ProcCmdLine
A native Windows x86/x64 library to retrieve a command line from a process ID
☆20Updated 4 years ago
Alternatives and similar repositories for ProcCmdLine
Users that are interested in ProcCmdLine are comparing it to the libraries listed below
Sorting:
- View Windows System in action☆39Updated last month
- ☆46Updated 5 months ago
- INF Studio for easier working with driver installation files☆37Updated last year
- Debug Print viewer (user and kernel)☆66Updated last year
- Compile time string encryption with NativeAOT☆28Updated 2 years ago
- Sample for Creating a new kernel object type and supporting API☆24Updated 8 months ago
- Bringing kernel driver to C# with NativeAOT (Surpassed by https://github.com/ZeroLP/WDK.NET)☆45Updated 2 years ago
- An improved Detours.☆64Updated last week
- A mini filter driver development framework allows you to develop minit filter driver with different features.☆47Updated 2 weeks ago
- ☆37Updated this week
- Example JIT Hook for .NET FW/Core.☆52Updated 5 years ago
- ☆17Updated 9 months ago
- pdb downloader☆27Updated last year
- A console debugger using DbgX and Terminal.Gui☆30Updated 2 years ago
- Devirtualizer for VirtualGuard Protector using AsmResolver☆39Updated 2 years ago
- Think APIMonitor, but for .NET binaries.☆55Updated 2 years ago
- ☆23Updated last year
- PdbView shows the contents of PDB files☆87Updated 6 years ago
- Signature scanner and API hooks to detect malicious process injection☆27Updated 2 years ago
- Helper functions for calculating the authenticode digest for a portable executable file☆16Updated 5 years ago
- Download pdbs from symbol servers and cache locally, parse symbol paths from env vars☆22Updated 2 months ago
- A PE32/PE32+ parser written in MASM32☆13Updated 9 years ago
- A Proof-of-Concept implementation for Proxy Object Obfuscation in .NET☆47Updated 2 years ago
- AMx64 is a simulated 64-bit environment that can interpret nasm-like asm code. It allows a usage of different 64-bit registers and 64-bit…☆23Updated last year
- Portable Executable parsing library, used by PEExplorer. Also available as a nuget package☆36Updated 7 years ago
- Disassemble bytecodes as MSIL☆17Updated 3 years ago
- Shows different icons for 64 and 32-bit DLLs. Register with RegSvr32 to install☆34Updated 4 months ago
- Library for linking multiple PE\PE + files to one☆51Updated last year
- Uses a driver to read/write process memory☆12Updated 4 years ago
- ☆65Updated 3 years ago