Process Monitor X v2
☆648Jan 22, 2024Updated 2 years ago
Alternatives and similar repositories for ProcMonXv2
Users that are interested in ProcMonXv2 are comparing it to the libraries listed below
Sorting:
- Windows System Explorer☆878Nov 29, 2025Updated 3 months ago
- Windows Object Explorer 64-bit☆1,886Feb 10, 2026Updated 3 weeks ago
- proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC☆1,270May 1, 2024Updated last year
- All reasonably stable tools☆1,395Jan 3, 2026Updated 2 months ago
- Detours with just single dependency - NTDLL☆672Nov 25, 2025Updated 3 months ago
- System call hook for Windows 10 20H1☆496Jun 26, 2021Updated 4 years ago
- Kernel Pool Monitor☆127Mar 6, 2022Updated 3 years ago
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,278Feb 14, 2026Updated 2 weeks ago
- View ETW Provider manifest☆574Nov 1, 2024Updated last year
- Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.☆902Nov 21, 2019Updated 6 years ago
- InfinityHookPro Win7 -> Win11 latest☆551Feb 7, 2023Updated 3 years ago
- The Universal C++ RunTime library, supporting kernel-mode C++ exception-handler and STL.☆407Jul 12, 2024Updated last year
- ☆69Mar 3, 2022Updated 4 years ago
- Windows kernel hacking framework, driver template, hypervisor and API written on C++☆1,802Nov 12, 2023Updated 2 years ago
- C++ Exceptions in Windows Drivers☆221Dec 21, 2020Updated 5 years ago
- Hook system calls, context switches, page faults and more.☆2,637May 9, 2023Updated 2 years ago
- KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.☆753Dec 15, 2025Updated 2 months ago
- Portable Executable Explorer version 2☆459Apr 9, 2024Updated last year
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆146Feb 23, 2019Updated 7 years ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆329May 2, 2024Updated last year
- Native API header files for the System Informer project.☆1,347May 25, 2025Updated 9 months ago
- A free but powerful Windows kernel research tool.☆2,650Dec 14, 2025Updated 2 months ago
- MemoryRanger protects kernel data and code by running drivers and hosting data in isolated kernel enclaves using VT-x and EPT features. M…☆232Jul 26, 2020Updated 5 years ago
- Sysmon-Like research tool for ETW☆384Nov 15, 2022Updated 3 years ago
- ☆125May 23, 2020Updated 5 years ago
- open source process monitor☆303Apr 25, 2025Updated 10 months ago
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl☆1,331Oct 31, 2025Updated 4 months ago
- A native hypervisor designed for the Windows operating system☆125Mar 6, 2021Updated 4 years ago
- Kernel Driver Utility☆2,422Feb 17, 2026Updated 2 weeks ago
- C++ STL in the Windows Kernel with C++ Exception Support☆435Aug 16, 2023Updated 2 years ago
- A driver that hooks C: volume using symbolic link callback to track all FS access to the volume☆109Apr 24, 2020Updated 5 years ago
- Analyze patches in a process☆259Jul 28, 2021Updated 4 years ago
- Explore Kernel Objects on Windows☆243Apr 4, 2025Updated 10 months ago
- Windows Anti-Rootkit Tool☆546Dec 31, 2025Updated 2 months ago
- Turn off PatchGuard in real time for win7 (7600) ~ later☆1,037Apr 21, 2022Updated 3 years ago
- Enhanced version of the classic Spy++ tool☆223Updated this week
- Hex-Rays microcode plugin for automated simplification of Windows Kernel decompilation.☆657Jan 28, 2025Updated last year
- The functions interception library written on pure C and NativeAPI with UserMode and KernelMode support☆763Apr 24, 2025Updated 10 months ago
- Protected Processes Light Killer☆979Mar 24, 2023Updated 2 years ago