eronnen / procmon-parserLinks
Parser to process monitor file formats
☆154Updated 2 months ago
Alternatives and similar repositories for procmon-parser
Users that are interested in procmon-parser are comparing it to the libraries listed below
Sorting:
- Official VirusTotal plugin for IDA Pro☆176Updated 2 weeks ago
- A collection of free miscellaneous Windows tools☆140Updated 4 months ago
- Hyper-V Research is trendy now☆190Updated last year
- WNF Utilities 4 Newbies (WNFUN)☆98Updated 7 years ago
- Parse .NET executable files.☆81Updated 3 months ago
- Toy scripts for playing with WinDbg JS API☆242Updated last year
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆184Updated 5 years ago
- Extract AutoIt scripts embedded in PE binaries☆215Updated last year
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆144Updated 5 years ago
- Hyper-V scripts☆135Updated 3 weeks ago
- Parsers for custom malware formats ("Funky malware formats")☆98Updated 3 years ago
- ☆111Updated 3 months ago
- An IDA Pro extension for easier (malware) reverse engineering☆115Updated 3 years ago
- capemon: CAPE's monitor☆142Updated last week
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆219Updated 3 years ago
- IDA Pro plugin for recognizing known hashes of API function names☆82Updated 3 years ago
- ☆73Updated 2 years ago
- IDA python plugin to scan binary with Yara rules☆180Updated last year
- ☆124Updated 5 years ago
- ☆68Updated 3 years ago
- A DTrace on Windows Reimplementation☆366Updated 2 months ago
- ☆140Updated 4 years ago
- Named pipe I/O ETW provider for Windows☆71Updated 5 years ago
- The content of this repository aims to assist efforts on analysing inner working principles, functionalities, and properties of the Micro…☆149Updated 5 years ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆323Updated last year
- The history of Windows Internals via symbols.☆181Updated 4 years ago
- Go Lang Portable Executable Parser☆39Updated 4 years ago
- Tools for instrumenting Windows Defender's mpengine.dll☆308Updated 7 years ago
- MalUnpack companion driver☆99Updated last year
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆118Updated 2 years ago