zodiacon / TotalPE2
PE Viewer
☆164Updated 3 weeks ago
Alternatives and similar repositories for TotalPE2:
Users that are interested in TotalPE2 are comparing it to the libraries listed below
- Explore Kernel Objects on Windows☆203Updated last year
- A bunch of parsers for PE and PDB formats in C++☆231Updated 9 months ago
- Yet another PE Viewer☆138Updated 2 years ago
- Advanced driver monitoring utility.☆203Updated 2 years ago
- Single header version of System Informer's phnt library.☆190Updated this week
- Use ci.dll API for validating Authenticode signature of files☆136Updated 2 years ago
- Bootkit for Windows Sandbox to disable DSE/PatchGuard.☆269Updated 4 months ago
- Enhanced version of the classic Spy++ tool☆182Updated 10 months ago
- Comparing, discussing, and bypassing various techniques for suspending and freezing processes on Windows.☆115Updated 3 years ago
- Reverse engineering winapi function loadlibrary.☆79Updated last year
- Collection of undocumented Windows API declarations.☆301Updated last month
- Global user-mode hooking framework, based on AppInit_DLLs. The goal is to allow you to rapidly develop hooks to inject in an arbitrary pr…☆167Updated 2 years ago
- x64 Windows kernel code execution via user-mode, arbitrary syscall, vulnerable IOCTLs demonstration☆265Updated 2 years ago
- Windows Filtering Platform Explorer☆235Updated 3 weeks ago
- Elevate a process to be a protected process☆144Updated 5 years ago
- Browse Page Tables on Windows (Page Table Viewer)☆193Updated 2 years ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆243Updated 2 years ago
- C++ library for low-level Windows development☆72Updated 10 months ago
- An example of a client and server using Windows' ALPC functions to send and receive data.☆94Updated 3 weeks ago
- Authenticode Hash Calculator for PE32/PE32+ files☆107Updated 11 months ago
- Kernel LdrLoadDll injector☆258Updated 6 years ago
- ntdll.h - compatible with MSVC 6.0, Intel C++ Compiler and MinGW. Serves as a complete replacement for Windows.h☆133Updated 5 years ago
- Run Processes as PPL with ELAM☆153Updated 2 years ago
- Samples for the book Windows Kernel Programming, 2nd edition☆321Updated last month
- Hacker Disassembler Engine 64 Copyright (c) 2008-2009, Vyacheslav Patkov. * All rights reserved.☆46Updated 3 years ago
- A global injection and hooking example☆135Updated last year
- Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers☆214Updated this week
- Debugger Anti-Detection Benchmark☆305Updated last year
- This project migrated to https://github.com/backengineering/llvm-msvc☆82Updated last year
- A small tool that allows to run WinAPI functions through command line parameters☆182Updated 2 years ago