therealdreg / auxlib
Full reversing of the Microsoft Auxiliary Windows API Library and ported to C
☆23Updated last year
Related projects ⓘ
Alternatives and complementary repositories for auxlib
- This repository contains some tools that I have written in the past☆26Updated last year
- Simple error lookup for Win32 and NTSTATUS errors☆17Updated 5 years ago
- Notes my learning steps about Windows-NT☆22Updated 7 years ago
- Windbg extension that allows you analyze Control Flow Guard map☆36Updated 3 years ago
- Static library and headers for linking your software with ntdll.dll☆30Updated 4 years ago
- User-mode program parsing logs created by HyperPlatform☆17Updated 8 years ago
- Microsoft Edge Microsoft Edge主页算法☆18Updated 5 years ago
- Demonstrate the new FileDispositionInfoEx behavior☆15Updated 7 years ago
- WoW64 -> x64☆18Updated 8 years ago
- Various WinDbg extensions and scripts☆31Updated 6 years ago
- penter hook example and driver time recorder☆31Updated 7 years ago
- Proof of concept headless GUI DLL☆12Updated 3 years ago
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆19Updated last year
- just an lite AntiRootkit for interesting☆23Updated 8 years ago
- ☆18Updated 5 years ago
- My commands and scripts extending WinDbg☆28Updated 2 months ago
- ☆28Updated 9 years ago
- User-mode process cross-checking utility intended to detect naive malware hiding itself by hooking IAT/EAT.☆18Updated 8 years ago
- A POC for Windows Extension Host hooking☆22Updated 5 years ago
- A tool to investigate the Windows device manager☆14Updated 5 years ago
- WhoCalls can query a directory of files, find the binaries, and search for a user specified Win API import. It and works with both 32-bit…☆17Updated 2 years ago
- drvtriks kernel driver for Windows 7 SP1 and 8.1 x64, that tricks around in your system.☆31Updated 7 years ago
- Native file compressor using only the ntdll.dll☆9Updated 6 years ago
- The project is a demo solution for one of the anti-rootkit techniques aimed on overcoming splicers☆34Updated 7 years ago
- Simple PE packer with RtlCompressBuffer☆21Updated 9 years ago
- Dump PDB Symbols including support for Bochs Debugging Format (with wine support)☆14Updated last year
- Windows NT port of 'Main is usually a function. So then when is it not?'☆24Updated 8 months ago
- Kernel-mode file scanner☆17Updated 6 years ago
- ASProtect reverse engineering & analysis WinDbg extension☆20Updated 4 years ago