eronnen / procmon-parser
Parser to process monitor file formats
☆137Updated last year
Alternatives and similar repositories for procmon-parser:
Users that are interested in procmon-parser are comparing it to the libraries listed below
- Hyper-V Research is trendy now☆177Updated 9 months ago
- WNF Utilities 4 Newbies (WNFUN)☆93Updated 6 years ago
- Named pipe I/O ETW provider for Windows☆69Updated 4 years ago
- ☆67Updated 2 years ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆286Updated 9 months ago
- A collection of free miscellaneous Windows tools☆130Updated 6 months ago
- Toy scripts for playing with WinDbg JS API☆224Updated 7 months ago
- ☆107Updated 4 years ago
- Official VirusTotal plugin for IDA Pro☆157Updated last year
- A command tree based on commands and extensions for Windows Kernel Debugging.☆107Updated 4 years ago
- The content of this repository aims to assist efforts on analysing inner working principles, functionalities, and properties of the Micro…☆151Updated 4 years ago
- ☆104Updated last year
- ☆125Updated 4 months ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆130Updated 4 years ago
- Robust Automated Malware Unpacker☆84Updated last year
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆139Updated 5 years ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆115Updated last year
- Simple windows API logger☆99Updated 5 years ago
- File system minifilter driver for Windows to block symbolic link attacks.☆51Updated 4 years ago
- Parse .NET executable files.☆75Updated 3 weeks ago
- Hyper-V scripts☆114Updated last year
- ☆102Updated 3 years ago
- Hyper-V Research is trendy now☆158Updated this week
- Windows Drivers☆97Updated 5 years ago
- capemon: CAPE's monitor☆107Updated this week
- Bindings for Microsoft WinDBG TTD☆215Updated last year
- Parsers for custom malware formats ("Funky malware formats")☆93Updated 3 years ago
- ☆141Updated last year
- Driver Initial Reconnaissance Tool☆121Updated 5 years ago
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆247Updated last year