zodiacon / ObjectExplorer
Explore Kernel Objects on Windows
☆205Updated last year
Alternatives and similar repositories for ObjectExplorer:
Users that are interested in ObjectExplorer are comparing it to the libraries listed below
- PE Viewer☆166Updated last month
- Yet another PE Viewer☆138Updated 2 years ago
- A global injection and hooking example☆135Updated last year
- Authenticode Hash Calculator for PE32/PE32+ files☆108Updated last year
- Monitor Kernel pool allocations tags☆61Updated last year
- open source process monitor☆260Updated last year
- C++ Exceptions in Windows Drivers☆204Updated 4 years ago
- Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers☆220Updated this week
- An example of a client and server using Windows' ALPC functions to send and receive data.☆94Updated last month
- A WinDbg extension to trace COM interactions☆110Updated last year
- Collection of undocumented Windows API declarations.☆302Updated last month
- A multiline (and ultimate) assembler (and disassembler) plugin for x64dbg and OllyDbg. A perfect tool for modifying and extending a compi…☆123Updated last month
- Advanced driver monitoring utility.☆204Updated 2 years ago
- ☆157Updated 5 months ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆139Updated 6 years ago
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆133Updated 5 years ago
- Single header version of System Informer's phnt library.☆193Updated this week
- A DTrace on Windows Reimplementation☆339Updated last month
- Run any executable as SYSTEM account (no service required)☆126Updated 9 months ago
- Samples for the book Windows Kernel Programming, 2nd edition☆325Updated 2 months ago
- Global user-mode hooking framework, based on AppInit_DLLs. The goal is to allow you to rapidly develop hooks to inject in an arbitrary pr…☆167Updated 2 years ago
- A small tool that allows to run WinAPI functions through command line parameters☆184Updated 2 years ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆269Updated 4 months ago
- A bunch of parsers for PE and PDB formats in C++☆231Updated 9 months ago
- Use ci.dll API for validating Authenticode signature of files☆137Updated 2 years ago
- APC Internals Research Code☆161Updated 4 years ago
- Process Monitor X v2☆598Updated last year
- Windows Filtering Platform Explorer☆242Updated last month
- Comparing, discussing, and bypassing various techniques for suspending and freezing processes on Windows.☆118Updated 3 years ago
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆135Updated 2 years ago