zodiacon / DepWalk
☆37Updated last year
Alternatives and similar repositories for DepWalk:
Users that are interested in DepWalk are comparing it to the libraries listed below
- Debug Print viewer (user and kernel)☆65Updated last year
- Analysing and defeating PatchGuard universally☆34Updated 4 years ago
- x64 assembler library☆31Updated 9 months ago
- 🧶 The Win32 usermode threading library with UMS/fibers/threads support☆30Updated 5 years ago
- Small project to generate fake DLLs based on an executable's import table☆23Updated 4 years ago
- View Windows System in action☆40Updated 2 months ago
- Small class to parse debug info from PEs, download their respective PDBs from the Microsoft Public Symbol Server and calculate RVAs of fu…☆43Updated last year
- INF Studio for easier working with driver installation files☆36Updated last year
- Remote memory library in C++17.☆31Updated 6 years ago
- Application Verifier Dynamic Fault Injection☆36Updated last week
- ☆48Updated 6 years ago
- ☆45Updated 3 months ago
- Native API header files for the Process Hacker project (nightly).☆26Updated this week
- Visual Studio Project example for using Microsoft's STL in WDM (Windows Kernel-mode Driver)☆25Updated 3 years ago
- A class to gather information about a process, its threads and modules.☆24Updated 5 years ago
- Figuring out the cause of a handle downgrade☆24Updated 2 years ago
- NT reversal☆25Updated 6 years ago
- Example of hijacking system calls via function pointer tables☆32Updated 3 years ago
- Fetch PDB symbols directly from Microsoft's symbol servers☆42Updated 3 years ago
- Detects if a Kernel mode debugger is active by reading the value of KUSER_SHARED_DATA.KdDebuggerEnabled. It is a high level and portable …☆23Updated 7 years ago
- Intraceptor intercept Windows NT API calls and redirect them to a kernel driver to bypass process/threads handle protections.☆29Updated 2 years ago
- Windows driver template, using C++20 & cmake & GithubActions☆20Updated 7 months ago
- A bunch of architectural headers for i386 and AMD64☆36Updated last year
- Elevate arbitrary MSR writes to kernel execution.☆32Updated last year
- A simple kernel mode driver that hooks some values at the KUSER_SHARED_DATA structure.☆26Updated 5 years ago
- paste string formatted byte data block into x64dbg easy.☆39Updated 4 years ago
- ☆24Updated 6 years ago
- Static Library For Windows Drivers☆33Updated last month
- (DEPRECATED) A simple anti-anti debug library for Windows☆29Updated 4 years ago
- Small memory leak PoC that is happening in IopGetDeviceInterfaces☆25Updated 4 years ago