eronnen / procmon-parserLinks
Parser to process monitor file formats
☆145Updated 2 years ago
Alternatives and similar repositories for procmon-parser
Users that are interested in procmon-parser are comparing it to the libraries listed below
Sorting:
- Hyper-V Research is trendy now☆181Updated last year
- A DTrace on Windows Reimplementation☆348Updated 4 months ago
- A collection of free miscellaneous Windows tools☆135Updated 10 months ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆299Updated last year
- Toy scripts for playing with WinDbg JS API☆233Updated 11 months ago
- Named pipe I/O ETW provider for Windows☆70Updated 4 years ago
- A bunch of JavaScript extensions for WinDbg.☆343Updated 7 months ago
- Sysmon-Like research tool for ETW☆353Updated 2 years ago
- Library and tools to access the Windows Prefetch File (SCCA) format.☆75Updated 6 months ago
- WNF Utilities 4 Newbies (WNFUN)☆95Updated 6 years ago
- View ETW Provider manifest☆498Updated 7 months ago
- ☆106Updated last year
- Official VirusTotal plugin for IDA Pro☆157Updated last year
- Hyper-V Research is trendy now☆164Updated this week
- A command tree based on commands and extensions for Windows Kernel Debugging.☆108Updated 4 years ago
- Bindings for Microsoft WinDBG TTD☆225Updated last year
- IDA python plugin to scan binary with Yara rules☆176Updated last year
- Parsers for custom malware formats ("Funky malware formats")☆96Updated 3 years ago
- Document ETW providers☆236Updated 5 years ago
- ☆127Updated 8 months ago
- ☆116Updated 4 years ago
- ☆68Updated 3 years ago
- Simple windows API logger☆104Updated 5 years ago
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆184Updated 4 years ago
- RPC Monitor tool based on Event Tracing for Windows☆357Updated 10 months ago
- Hyper-V scripts☆122Updated last year
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆206Updated 2 years ago
- The content of this repository aims to assist efforts on analysing inner working principles, functionalities, and properties of the Micro…☆151Updated 5 years ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆143Updated 4 years ago
- ☆106Updated 3 years ago