yardenshafir / PoolViewer
An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.
☆137Updated 2 years ago
Alternatives and similar repositories for PoolViewer:
Users that are interested in PoolViewer are comparing it to the libraries listed below
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆217Updated 5 years ago
- Unofficial Common Log File System (CLFS) Documentation☆176Updated 3 years ago
- APC Internals Research Code☆166Updated 4 years ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆200Updated 9 months ago
- IOCTLpus can be used to make DeviceIoControl requests with arbitrary inputs (with functionality somewhat similar to Burp Repeater).☆88Updated 3 years ago
- Static Binary Instrumentation tool for Windows x64 executables☆201Updated this week
- Toy scripts for playing with WinDbg JS API☆228Updated 9 months ago
- Research on Windows Kernel Executive Callback Objects☆286Updated 5 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆140Updated 6 years ago
- ☆143Updated last year
- Yet another windows internals repo☆207Updated 3 years ago
- ☆159Updated 3 years ago
- Bindings for Microsoft WinDBG TTD☆220Updated last year
- ☆109Updated 4 years ago
- A collection of tools, source code, and papers researching Windows' implementation of CET.☆83Updated 4 years ago
- Hyper-V Research is trendy now☆178Updated last year
- Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2☆227Updated 2 years ago
- The Windbg extensions to study Hyper-V on Intel and AMD processors.☆152Updated last month
- Advanced driver monitoring utility.☆208Updated 2 years ago
- PoC exploiting Aligned Chunk Confusion on Windows kernel Segment Heap☆206Updated 4 years ago
- Resolve DOS MZ executable symbols at runtime☆95Updated 3 years ago
- Windows Kernel Programming☆128Updated 4 years ago
- Windbg2ida lets you dump each step in Windbg then shows these steps in IDA☆75Updated 10 months ago
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆151Updated last year
- Set of antianalysis techniques found in malware☆132Updated last year
- Three Tiny Examples of Directly Using Vista's NtCreateUserProcess☆87Updated 9 years ago
- Hyper-V Research is trendy now☆163Updated 2 weeks ago
- Hyper-V scripts☆122Updated last year
- Enumerate user mode shared memory mappings on Windows.☆121Updated 4 years ago
- This is a collection of interesting codes about Windows Process creation.☆232Updated last year