chentiangemalc / EtlToCapLinks
EtlToCap
☆9Updated 5 years ago
Alternatives and similar repositories for EtlToCap
Users that are interested in EtlToCap are comparing it to the libraries listed below
Sorting:
- EventList - the Baseline Event Analyzer☆11Updated 5 years ago
- Windows Runtime API Interop Utilities for Windows PowerShell☆30Updated 5 years ago
- PowerShell based Microsoft DNS management tool set☆19Updated 9 years ago
- PowerShell Over WMI☆17Updated 6 years ago
- ComPower is a Windows PowerShell module to work with the Component Object Model (COM).☆30Updated 10 years ago
- MSTSC Packet Dump Utility☆29Updated 3 years ago
- BCD is a module to interact with boot configuration data (BCD) either locally or remotely using the ROOT/WMI:Bcd* WMI classes. The functi…☆61Updated 4 years ago
- Event metadata collected across all manifest-based ETW providers on Window 10 1903☆31Updated 5 years ago
- ☆28Updated 2 years ago
- ☆21Updated 9 years ago
- Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.☆23Updated 4 years ago
- Generate RSA keys, encrypt and decrypt data☆24Updated 4 years ago
- Library for Windows XML Event Log (EVTX) data types☆18Updated 8 months ago
- All TMF files that I extracted from Microsoft PDBs.☆12Updated 5 years ago
- ☆20Updated this week
- Analysis and manipulation of extended attribute ($EA) on NTFS☆38Updated 9 years ago
- Takes the original idea of NetCease and adds functionality☆24Updated 3 years ago
- ☆17Updated 5 years ago
- Collection of scripts to Invoke an expression with different credentials.☆34Updated 4 years ago
- ☆16Updated 7 years ago
- AD Live changes viewer☆36Updated 2 years ago
- A module for working with Windows Event Collector service and maintain Windows Event Forwarding subscriptions.☆34Updated 4 years ago
- Looks up permissions within Active Directory on a target (OU or Computer) to determine access to LAPS attributes (ms-Mcs-AdmPwdExpiration…☆15Updated 2 years ago
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆53Updated last year
- AppContainer and LPAC (Less Privileged AppContainer) Launcher with Capabilities☆59Updated 8 months ago
- Example/starter code for custom Windows application compatibility shims☆33Updated 4 years ago
- Diff tool for comparing export tables in PE images☆24Updated 5 years ago
- Read Windows message table entries.☆11Updated 2 years ago
- Script to enabled DNS Debug Logging across Domain Controllers in a Forest and then retrieve for analysis☆13Updated 9 years ago
- Rust PowerShell Hosting Library☆16Updated 8 months ago