zodiacon / WindowsInternalsLinks
Windows Internals Book 7th edition Tools
☆2,669Updated last year
Alternatives and similar repositories for WindowsInternals
Users that are interested in WindowsInternals are comparing it to the libraries listed below
Sorting:
- All reasonably stable tools☆1,384Updated last month
- Windows System Explorer☆876Updated 2 months ago
- Windows System Call Tables (NT/2000/XP/2003/Vista/7/8/10/11)☆2,511Updated last month
- Windows Object Explorer 64-bit☆1,883Updated 3 weeks ago
- Sample extensions, scripts, and API uses for WinDbg.☆810Updated last month
- The official Windows Driver Kit documentation sources☆1,000Updated this week
- Set of tools to analyze Windows sandboxes for exposed attack surface.☆2,260Updated 3 months ago
- PE Tools - Portable executable (PE) manipulation toolkit☆1,163Updated 3 months ago
- Content for sysinternals.com☆539Updated this week
- Native API header files for the System Informer project.☆1,336Updated 8 months ago
- The Windows Kernel Programming book samples☆664Updated 2 years ago
- windows kernel security development☆2,054Updated 3 years ago
- Windows 10 System Programming book samples☆449Updated 3 months ago
- Detours is a software package for monitoring and instrumenting API calls on Windows. It is distributed in source code form.☆6,129Updated last month
- A .net OLE/COM viewer and inspector to merge functionality of OleView and Test Container☆1,364Updated last year
- PE file viewer/editor for Windows, Linux and MacOS.☆1,188Updated this week
- Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-mem…☆3,550Updated 3 months ago
- Windows tool for dumping malware PE files from memory back to disk for analysis.☆1,824Updated last year
- WDF makes it easy to write high-quality Windows drivers☆1,311Updated last year
- A free, powerful, multi-purpose tool that helps you monitor system resources, debug software and detect malware—mirror of https://github.…☆933Updated this week
- A free but powerful Windows kernel research tool.☆2,647Updated last month
- Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loadi…☆3,216Updated 3 years ago
- HackSys Extreme Vulnerable Driver (HEVD) - Windows & Linux☆2,930Updated 11 months ago
- PE-bear (builds only)☆783Updated 2 years ago
- Hook system calls, context switches, page faults and more.☆2,628Updated 2 years ago
- KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.☆749Updated last month
- A Pin Tool for tracing API calls etc☆1,612Updated 2 months ago
- Windows NT Syscall tables☆1,381Updated last month
- pefile is a Python module to read and work with PE (Portable Executable) files☆2,014Updated last week
- RpcView is a free tool to explore and decompile Microsoft RPC interfaces☆1,036Updated 2 years ago