Procmonel is Procmon like monitoring system implemented using Microsoft WDK
☆12Dec 25, 2019Updated 6 years ago
Alternatives and similar repositories for Procmonel
Users that are interested in Procmonel are comparing it to the libraries listed below
Sorting:
- A ProcMon-esque tool for monitoring Windows Kernel Drivers☆63May 31, 2021Updated 4 years ago
- A Windows kernel driver unit testing framework. Provides a macro free modern cpp syntax. Includes tools for automatic running on your vm.☆11May 15, 2023Updated 2 years ago
- A step-by-step walkthrough of how to write a Client and a Driver to communicate with each other and boost the priority of a thread.☆17Dec 12, 2023Updated 2 years ago
- Record & prevent file deletion in kernel mode☆46Jul 22, 2020Updated 5 years ago
- prebuild angr wheels for Windows on x86_64☆15Jul 21, 2018Updated 7 years ago
- Process Creation, Image Load and Thread Creation Notification☆13Sep 15, 2023Updated 2 years ago
- Extract files from NTFS Volume☆32May 18, 2021Updated 4 years ago
- Ransomware detection application for Windows using Windows Minifilter driver☆93Jun 6, 2020Updated 5 years ago
- Forked from Akayan. Windows Kernel Exploitation. Static & dynamic analysis, exploits & vuln reasearch. Mitigations bypass's, genric bug-c…☆16Oct 29, 2024Updated last year
- Use WinDBG to trace the Windows API calls of any Portable Executable file☆32Apr 13, 2017Updated 8 years ago
- Block process execute kernel driver for Windows x64☆19Apr 7, 2016Updated 9 years ago
- Easy Transparent Encrypted File System Based on Minifilter File System Driver☆35Feb 23, 2026Updated last week
- An example of a camera class (upper) filter driver for Windows.☆45Aug 13, 2025Updated 6 months ago
- HACK PROGRAM☆19Feb 7, 2018Updated 8 years ago
- ☆19Sep 27, 2018Updated 7 years ago
- An alternative to Windows TraceView util☆22Nov 29, 2017Updated 8 years ago
- ☆14Feb 27, 2017Updated 9 years ago
- Kernel (Ring0) - SSDT unhook driver☆14Feb 22, 2018Updated 8 years ago
- Formely KMon, a Windows Kernel Driver designed to prevent malware attacks by monitoring the creation of registry keys in common autorun l…☆21Feb 15, 2014Updated 12 years ago
- Overwrite MBR and add own custom message☆16Apr 1, 2020Updated 5 years ago
- ☆58Updated this week
- Windows file system minifilter driver which generates backup copies of certain files before they change☆47Oct 13, 2018Updated 7 years ago
- ntfs文件系统的数据恢复☆21Oct 16, 2024Updated last year
- Full reversing of the Microsoft Auxiliary Windows API Library and ported to C☆24Dec 17, 2024Updated last year
- A framework for Windows KMDF-based upper filter drivers to behave as bus filters. You don't need to write WDM drivers any more!☆24Jul 26, 2025Updated 7 months ago
- File system minifilter driver for Windows to block symbolic link attacks.☆51Dec 16, 2020Updated 5 years ago
- Virtual Trust Level (VTL 1) secure call tracing☆103Feb 12, 2026Updated 2 weeks ago
- From https://www.codeproject.com/Articles/81456/An-NTFS-Parser-Lib by cyb70289☆25Sep 20, 2018Updated 7 years ago
- ☆29Jan 15, 2021Updated 5 years ago
- Solutions to HackSysExtremeVulnerableDriver challenges though my following of @FuzzySecurity's tutorials plus futher explanations where n…☆22Aug 25, 2017Updated 8 years ago
- a net filter drive developed by wfp and msddk☆23Jul 15, 2019Updated 6 years ago
- A MirrorDriver with SharedMemory useing EngMapFile☆23Apr 2, 2020Updated 5 years ago
- ☆26May 31, 2019Updated 6 years ago
- A class to gather information about a process, its threads and modules.☆23Mar 23, 2020Updated 5 years ago
- A driver to intercept low level windows events☆64Oct 2, 2019Updated 6 years ago
- Analyze and attack windows applications using dll hijacking vulnerabilities☆58Sep 22, 2019Updated 6 years ago
- Windows API listing in JSON format - generated from SDK headers + SDK API documentation☆67Jun 22, 2020Updated 5 years ago
- DTrace for Windows in userspace; Frontend to ETW☆27Oct 4, 2022Updated 3 years ago
- Run any executable as SYSTEM account (no service required)☆141May 11, 2024Updated last year