zodiacon / ManagedWindowsLinks
Managed wrappers around the Windows API and some Native API
☆34Updated 7 years ago
Alternatives and similar repositories for ManagedWindows
Users that are interested in ManagedWindows are comparing it to the libraries listed below
Sorting:
- Provides a way which you can load a .NET dll/exe from disk, modify/inject IL, and then run the assembly all in memory without modifying t…☆29Updated 8 years ago
- An example pattern in C# for using WMI to monitor process creation and termination events.☆53Updated 7 years ago
- WPF helper library☆14Updated 6 years ago
- Diff tool for comparing export tables in PE images☆24Updated 5 years ago
- Win32 memory leak detector with ETW☆47Updated 7 years ago
- Hex Studio is a work in progress Hex viewer and editor.☆25Updated 8 years ago
- ☆21Updated 8 years ago
- Loading a native DLL in the memory.☆70Updated 7 years ago
- Explore .NET Processes and Dump files☆118Updated 5 years ago
- ☆16Updated 8 years ago
- Diff tool for comparing symbols in PDB files☆84Updated 5 years ago
- PoC: process watcher patterns to make killing a process hard.☆11Updated 7 years ago
- Viewing NTFS alternate streams in files☆33Updated 8 years ago
- ☆22Updated 3 years ago
- Portable Executable parsing library, used by PEExplorer. Also available as a nuget package☆36Updated 7 years ago
- Services and Drivers control application☆19Updated 8 years ago
- Windows hidden thread suspend POC with code injection☆12Updated 8 years ago
- Provides the ability to patch/hook functions imported by a dll or executable☆35Updated 15 years ago
- Low-level MS Windows registry files analysis tools☆20Updated 9 years ago
- .NET instrumentation framework☆72Updated 7 years ago
- CVE-2019-1064 Local Privilege Escalation Vulnerability☆11Updated 6 years ago
- An alternative tool to Sysinternals WinObj tool (nicer icons!)☆37Updated 7 years ago
- C++ Host .NET CLR & Run a assembly directly from ressource (RT_RCDATA) without extraction disk.☆15Updated 2 years ago
- Demonstrate the new FileDispositionInfoEx behavior☆14Updated 8 years ago
- Dump certificates from PE files in different formats☆38Updated last year
- Simple command line version of Sysinternals WinObj. Currently just lists object names and types given an object manager directory.☆21Updated 2 years ago
- Shellcode injection using debugging APIs☆19Updated 11 years ago
- A specialized C# memory-accessing library☆42Updated 6 years ago
- The project is a demo solution for one of the anti-rootkit techniques aimed on overcoming splicers☆35Updated 8 years ago
- ☆20Updated 6 years ago