zodiacon / TotalPE2
PE Viewer
☆179Updated 3 months ago
Alternatives and similar repositories for TotalPE2
Users that are interested in TotalPE2 are comparing it to the libraries listed below
Sorting:
- Yet another PE Viewer☆140Updated 2 years ago
- Explore Kernel Objects on Windows☆215Updated last month
- Single header version of System Informer's phnt library.☆215Updated last week
- Advanced driver monitoring utility.☆209Updated 2 years ago
- Elevate a process to be a protected process☆150Updated 5 years ago
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆137Updated 5 years ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆279Updated 6 months ago
- A bunch of parsers for PE and PDB formats in C++☆243Updated 11 months ago
- Debugger Anti-Detection Benchmark☆332Updated last year
- Global user-mode hooking framework, based on AppInit_DLLs. The goal is to allow you to rapidly develop hooks to inject in an arbitrary pr…☆170Updated 3 years ago
- A modern c++ implementation of windows heavens gate☆222Updated 4 years ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆245Updated 2 years ago
- Comparing, discussing, and bypassing various techniques for suspending and freezing processes on Windows.☆124Updated 3 years ago
- Use ci.dll API for validating Authenticode signature of files☆138Updated 3 years ago
- Samples for the book Windows Kernel Programming, 2nd edition☆332Updated 4 months ago
- An example of a client and server using Windows' ALPC functions to send and receive data.☆96Updated 3 months ago
- Browse Page Tables on Windows (Page Table Viewer)☆198Updated 3 years ago
- DLL that hooks the NtQuerySystemInformation API and hides a process name☆288Updated 2 years ago
- A DTrace on Windows Reimplementation☆344Updated 3 months ago
- Collection of undocumented Windows API declarations.☆314Updated last month
- DSE bypass using a leaked cert and adjusting the current clock.☆150Updated 2 years ago
- x86 PE Mutator☆216Updated 2 years ago
- Webpage for a wealth of learning for many things Windows NT visit: https://empyreal96.github.io/nt-info-depot/index.html☆100Updated 4 years ago
- APC Internals Research Code☆166Updated 4 years ago
- x64 Windows PatchGuard bypass, register process-creation callbacks from unsigned code☆202Updated 3 years ago
- Simple x86/x64 Assembler/Disassembler/Emulator☆184Updated 9 months ago
- Run Processes as PPL with ELAM☆161Updated 3 years ago
- A WinDbg extension to trace COM interactions☆114Updated last year
- Samples from my book Windows Native API programming☆66Updated last week
- Custom LoadLibrary / GetProcAddress (x86 / x64) - Load DLL and retrieve functions manually☆91Updated last year