utshina / noahx
Noah for Windows
☆25Updated 3 years ago
Alternatives and similar repositories for noahx:
Users that are interested in noahx are comparing it to the libraries listed below
- Driver demonstrating how to register a DPC to asynchronously wait on an object☆49Updated 4 years ago
- penter hook example and driver time recorder☆31Updated 7 years ago
- Takes a Windbg dumped structure (using the 'dt' command) and formats it into a C structure☆35Updated 6 months ago
- Analyze PatchGuard☆54Updated 6 years ago
- NDC Oslo 2019 slides and demos☆32Updated 4 years ago
- Windows_OS_Internals_Curriculum_Resource_Kit-ACADEMIC☆23Updated 6 years ago
- A common set of helpers used across VTIL toolchain. Moved into -->☆20Updated 4 years ago
- AMD SVM hypervisor rootkit proof of concept☆44Updated last year
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆19Updated last year
- Tools made for my Hyper-V blog series @ https://foxhex0ne.blogspot.com/☆55Updated 4 years ago
- Figuring out the cause of a handle downgrade☆24Updated 2 years ago
- A local copy of Alex Ionescu's seemingly abandoned native-nt-toolkit project containing knowledge inherited from the ReactOS project.☆54Updated 5 years ago
- A driver to intercept low level windows events☆62Updated 5 years ago
- An LLVM clone modified for use in RetDec and associated tools.☆19Updated 9 months ago
- The bootloader for the latest versions of Windows NT, Windows 8 to Windows 11.☆20Updated 4 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆52Updated 10 months ago
- A research project about Windows notify routines.☆35Updated 4 years ago
- Various WinDbg extensions and scripts☆31Updated 6 years ago
- Crash Windows 10 up to RS2 from an unprivileged process☆41Updated 7 years ago
- Static library and headers for linking your software with ntdll.dll☆32Updated 5 years ago
- Simple Protected Mode Kernel for i386☆16Updated 5 years ago
- win32/x64 obfuscate framework☆32Updated 5 years ago
- Extended Length Disassembler Engine for x86-64 (1337 bytes in size)☆48Updated 5 years ago
- Windows NT port of 'Main is usually a function. So then when is it not?'☆25Updated 10 months ago
- Windows Hypervisor Platform client☆29Updated 6 years ago
- a binary x86win32 code obfuscator using virtual machine☆32Updated 8 years ago
- Windows 10 PE image loader (LDR) NTDLL component toolbox☆49Updated 5 years ago
- Example WDF/KMDF driver and test app demonstrating the "inverted call model"☆33Updated 4 years ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆42Updated 3 years ago
- VMCS Auditor provides almost all of Intel's VMCS Layout checklist based on Bochs Emulator.☆32Updated 6 years ago