utshina / noahx
Noah for Windows
☆22Updated 3 years ago
Related projects: ⓘ
- Full reversing of the Microsoft Auxiliary Windows API Library and ported to C☆23Updated last year
- Native win32 executables loader☆52Updated 6 years ago
- Various WinDbg extensions and scripts☆31Updated 6 years ago
- An example of Windows NT Native API application and kernel driver☆20Updated 4 years ago
- Windows 10 PE image loader (LDR) NTDLL component toolbox☆40Updated 4 years ago
- Windows NT port of 'Main is usually a function. So then when is it not?'☆24Updated 6 months ago
- Windows Hypervisor Platform client☆28Updated 6 years ago
- penter hook example and driver time recorder☆28Updated 6 years ago
- DirectNtApi - simple method to make ntapi function call without importing or walking export table. Work under Windows 7, 8 and 10☆49Updated 6 months ago
- NDC Oslo 2019 slides and demos☆32Updated 3 years ago
- An API Monitor based on Instrumentation☆40Updated 6 years ago
- ☆38Updated last year
- A local copy of Alex Ionescu's seemingly abandoned native-nt-toolkit project containing knowledge inherited from the ReactOS project.☆53Updated 4 years ago
- a binary x86win32 code obfuscator using virtual machine☆32Updated 7 years ago
- AMD SVM hypervisor rootkit proof of concept☆39Updated 11 months ago
- Runtime smm module loader☆30Updated last year
- Demonstration of a Windows Boot Program using Window's Native API☆30Updated 5 years ago
- Decompresses and compresses the Windows bootmgr (Vista, 7, and 8)☆22Updated 8 years ago
- Driver demonstrating how to register a DPC to asynchronously wait on an object☆45Updated 3 years ago
- Simple error lookup for Win32 and NTSTATUS errors☆17Updated 5 years ago
- The bootloader for the latest versions of Windows NT, Windows 8 to Windows 11.☆19Updated 4 years ago
- Debugger extension for the Debugging Tools for Windows (WinDbg, KD, CDB, NTSD).☆67Updated 7 years ago
- Intermediate x86 instruction representation for use in obfuscation/deobfuscation.☆53Updated 7 years ago
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆19Updated last year
- Simple Protected Mode Kernel for i386☆15Updated 4 years ago
- Scripts to prepare Windows system for debugging.☆29Updated 3 years ago
- windbg open source☆39Updated 10 years ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆41Updated 2 years ago
- This repository contains some tools that I have written in the past☆25Updated 10 months ago
- An LLVM clone modified for use in RetDec and associated tools.☆19Updated 4 months ago