airbus-cert / ttd2mdmp
Extract data of TTD trace file to a minidump
☆28Updated last year
Related projects ⓘ
Alternatives and complementary repositories for ttd2mdmp
- RenameLocalVars is an IDA plugin that renames local variables to something easier to read.☆15Updated last year
- ☆20Updated 3 years ago
- ☆12Updated last year
- ☆24Updated 11 months ago
- Designed to learn OS specific anti-emulation patterns by fuzzing the Windows API.☆94Updated 4 years ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆33Updated 3 years ago
- An IDA plugin to deal with Event Tracing for Windows (ETW)☆50Updated 2 years ago
- Example for PagedOut!☆24Updated 5 years ago
- ☆28Updated 4 years ago
- Winbindex bot to pull in binaries for specific releases☆46Updated last year
- ☆17Updated 3 years ago
- ☆31Updated 4 years ago
- Command like tool to print mitigation flags for running processes in a memory dump☆44Updated 4 years ago
- Python 3 - Manipulation and conversation with different data type (Bytes operations)☆27Updated 2 years ago
- ☆24Updated 3 years ago
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆24Updated last year
- ☆44Updated 4 years ago
- A KISS Rust crate to parse Windows kernel crash-dumps created by Windows & its debugger.☆33Updated 3 months ago
- ☆12Updated 4 years ago
- ☆10Updated 2 years ago
- Rekall Memory Forensic Framework☆29Updated 5 years ago
- Helper idapython code for reversing kmdf drivers☆67Updated 2 years ago
- dk is a WinDbg extenion for dumping memory data in meaningful and organized ways, it is an enhancement of my previous tokenext project.☆22Updated last year
- Clone running process with ZwCreateProcess☆58Updated 4 years ago
- CVE-2024-40431+CVE-2022-25479 chain for EOP(DATA ONLY ATTACK)☆45Updated last month
- Helper Script to convert a Windbg dumped structure (using the 'dt' command) into a C structure. It creates dummy structs for you if neede…☆26Updated last year
- ☆26Updated 3 weeks ago
- A collection of shellcode hashes☆17Updated 6 years ago
- WinXPSP2.Cermalus on stereoids, supporting all 32 bits Windows version. Windows Kernel Virus stuff for noobs☆16Updated last year