Monitor activity of any driver
☆353Nov 2, 2020Updated 5 years ago
Alternatives and similar repositories for DriverMon
Users that are interested in DriverMon are comparing it to the libraries listed below
Sorting:
- WinDBG Anti-RootKit Extension☆645Jul 29, 2020Updated 5 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆437Aug 22, 2018Updated 7 years ago
- The goal of the tool is to monitor requests received by selected device objects or kernel drivers. The tool is quite similar to IrpTracke…☆408Dec 27, 2024Updated last year
- Portable Executable Explorer☆161Mar 14, 2021Updated 4 years ago
- Simple driver to register all available process, thread, image, Registry, and Object callbacks☆124Oct 5, 2017Updated 8 years ago
- All reasonably stable tools☆1,395Jan 3, 2026Updated last month
- View handles and object for each object type☆64Sep 1, 2019Updated 6 years ago
- Syscall Monitor is a system monitor program (like Sysinternal's Process Monitor) using Intel VT-X/EPT for Windows7+☆747Jun 26, 2017Updated 8 years ago
- Elevation of privilege detector based on HyperPlatform☆123Mar 5, 2017Updated 8 years ago
- Notes my learning steps about Windows-NT☆23May 18, 2017Updated 8 years ago
- ☆34Sep 22, 2017Updated 8 years ago
- ☆408Mar 1, 2017Updated 9 years ago
- usermode standalone kernel interface☆111Jul 9, 2018Updated 7 years ago
- Papers, blogposts, tutorials etc for learning about Windows kernel exploitation, internals and (r|b)ootkits☆415Jan 2, 2020Updated 6 years ago
- Hypervisor-based debugger☆191Dec 2, 2020Updated 5 years ago
- A command tree based on commands and extensions for Windows Kernel Debugging.☆111Jul 10, 2020Updated 5 years ago
- ☆16Nov 10, 2015Updated 10 years ago
- libemu shim layer and win32 environment for Unicorn Engine☆73Apr 14, 2017Updated 8 years ago
- A sample project for using Capstone from a driver in Visual Studio 2015☆36May 4, 2016Updated 9 years ago
- Шаблон полнофункционального драйвера и обёртки над ядерным API☆114Aug 28, 2016Updated 9 years ago
- Hypervisor based tool for monitoring system register accesses.☆154Sep 13, 2018Updated 7 years ago
- Exploiting CPU-Z Driver To Turn Load Unsigned Drivers☆131Aug 10, 2017Updated 8 years ago
- AllMemPro☆46Jan 15, 2018Updated 8 years ago
- PEDA-like debugger UI for WinDbg☆206Mar 29, 2024Updated last year
- This driver implements the Intel Processor Trace functionality in Intel Skylake architecture for Microsoft Windows☆466Apr 17, 2018Updated 7 years ago
- reverse engineering extension plugin for windbg☆121Sep 30, 2019Updated 6 years ago
- Process Monitor X v2☆648Jan 22, 2024Updated 2 years ago
- Windows Object Explorer 64-bit☆1,886Feb 10, 2026Updated 2 weeks ago
- Kernel Pool Monitor☆127Mar 6, 2022Updated 3 years ago
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆372Jan 8, 2020Updated 6 years ago
- Windows System Explorer☆878Nov 29, 2025Updated 3 months ago
- Windbg extension to find PatchGuard pages☆123Jun 24, 2014Updated 11 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆66Apr 4, 2020Updated 5 years ago
- Windows kernel-mode callbacks tutorial driver☆48Aug 8, 2016Updated 9 years ago
- PdbView shows the contents of PDB files☆94Aug 23, 2018Updated 7 years ago
- pcmonitor - windows kernel driver to monitor users activity(such as keyboard input, screenshot) and send encrypted reports to mobile appl…☆118Feb 5, 2014Updated 12 years ago
- Pocs for Antivirus Software‘s Kernel Vulnerabilities☆266Jul 6, 2017Updated 8 years ago
- Hide Driver By MiProcessLoaderEntry☆294May 17, 2019Updated 6 years ago
- pdbex is a utility for reconstructing structures and unions from the PDB into compilable C headers☆892Jun 18, 2025Updated 8 months ago