Monitor activity of any driver
☆353Nov 2, 2020Updated 5 years ago
Alternatives and similar repositories for DriverMon
Users that are interested in DriverMon are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- WinDBG Anti-RootKit Extension☆642Jul 29, 2020Updated 5 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆439Aug 22, 2018Updated 7 years ago
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆415Dec 27, 2024Updated last year
- Portable Executable Explorer☆162Mar 14, 2021Updated 5 years ago
- All reasonably stable tools☆1,417Feb 27, 2026Updated 2 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Simple driver to register all available process, thread, image, Registry, and Object callbacks☆123Oct 5, 2017Updated 8 years ago
- View handles and object for each object type☆67Sep 1, 2019Updated 6 years ago
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+☆749Jun 26, 2017Updated 8 years ago
- ☆16Nov 10, 2015Updated 10 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Apr 4, 2020Updated 6 years ago
- Hypervisor-based debugger☆191Dec 2, 2020Updated 5 years ago
- ☆34Sep 22, 2017Updated 8 years ago
- Process Monitor X v2☆656Jan 22, 2024Updated 2 years ago
- Windows Object Explorer 64-bit☆1,922Mar 22, 2026Updated 2 months ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Windows System Explorer☆884Nov 29, 2025Updated 5 months ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆416Jan 2, 2020Updated 6 years ago
- ☆406Mar 1, 2017Updated 9 years ago
- Extended Process Monitor-like tool based on Event Tracing for Windows☆475Nov 29, 2019Updated 6 years ago
- AllMemPro☆46Jan 15, 2018Updated 8 years ago
- A sample project for using Capstone from a driver in Visual Studio 2015☆36May 4, 2016Updated 10 years ago
- This driver implements the Intel Processor Trace functionality in Intel Skylake architecture for Microsoft Windows☆477Apr 17, 2018Updated 8 years ago
- Elevation of privilege detector based on HyperPlatform☆123Mar 5, 2017Updated 9 years ago
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 9 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- usermode standalone kernel interface☆111Jul 9, 2018Updated 7 years ago
- Hypervisor based tool for monitoring system register accesses.☆156Sep 13, 2018Updated 7 years ago
- Шаблон полнофункционального драйвера и обёртки над ядерным API☆112Aug 28, 2016Updated 9 years ago
- Monitoring and controlling kernel API calls with stealth hook using EPT☆1,381Jan 22, 2022Updated 4 years ago
- Blog posts☆30Aug 7, 2020Updated 5 years ago
- A tool to help malware analysts tell that the sample is injecting code into other process.☆77Aug 12, 2015Updated 10 years ago
- Hide Driver By MiProcessLoaderEntry☆291May 17, 2019Updated 7 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆108Apr 24, 2020Updated 6 years ago
- Set of tools to analyze Windows sandboxes for exposed attack surface.☆2,287Nov 6, 2025Updated 6 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A windbg extension, extracting token related contents☆41Dec 23, 2020Updated 5 years ago
- A command tree based on commands and extensions for Windows Kernel Debugging.☆114Jul 10, 2020Updated 5 years ago
- reverse engineering extension plugin for windbg☆122Sep 30, 2019Updated 6 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆147Feb 23, 2019Updated 7 years ago
- ☆21Jul 9, 2019Updated 6 years ago
- PdbView shows the contents of PDB files☆95Aug 23, 2018Updated 7 years ago
- Bypass for the hardening against usage of tagWnd as a kernel read/write primitive☆32Mar 22, 2017Updated 9 years ago