zodiacon / WFPExplorer
Windows Filtering Platform Explorer
☆259Updated 3 months ago
Alternatives and similar repositories for WFPExplorer
Users that are interested in WFPExplorer are comparing it to the libraries listed below
Sorting:
- Document ETW providers☆231Updated 5 years ago
- Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers☆251Updated this week
- PE Viewer☆179Updated 3 months ago
- open source process monitor☆272Updated 2 weeks ago
- Explore Kernel Objects on Windows☆215Updated last month
- Process Monitor X v2☆611Updated last year
- Run the program with the specified permission level (C++20 required)☆344Updated 2 months ago
- Authenticode Hash Calculator for PE32/PE32+ files☆111Updated last year
- View ETW Provider manifest☆482Updated 6 months ago
- Samples for the book Windows Kernel Programming, 2nd edition☆332Updated 4 months ago
- Controlling Windows PP(L)s☆317Updated last year
- RPC Monitor tool based on Event Tracing for Windows☆349Updated 8 months ago
- A DTrace on Windows Reimplementation☆344Updated 3 months ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆297Updated last year
- DSE bypass using a leaked cert and adjusting the current clock.☆150Updated 2 years ago
- A collection of free miscellaneous Windows tools☆134Updated 8 months ago
- Source code for File Test - Interactive File System Test Tool☆283Updated last month
- Sysmon-Like research tool for ETW☆352Updated 2 years ago
- Yet another PE Viewer☆140Updated 2 years ago
- Expand compressed files from WinSxS folder☆158Updated 10 months ago
- A global injection and hooking example☆140Updated last year
- Run any executable as SYSTEM account (no service required)☆129Updated last year
- A small tool that allows to run WinAPI functions through command line parameters☆191Updated 2 years ago
- MemoryModule which compatible with Win32 API and support exception handling☆397Updated 3 months ago
- Run Processes as PPL with ELAM☆161Updated 3 years ago
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆967Updated last year
- Some Code Samples for Windows based Inter-Process-Communication (IPC)☆174Updated last year
- Extract Windows Defender database from vdm files and unpack it☆440Updated 5 years ago
- ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detecti…☆301Updated last year
- A tabbed UI for Microsoft's Hyper-V☆215Updated 8 months ago