eronnen / procmon-parserLinks
Parser to process monitor file formats
☆159Updated 4 months ago
Alternatives and similar repositories for procmon-parser
Users that are interested in procmon-parser are comparing it to the libraries listed below
Sorting:
- A collection of free miscellaneous Windows tools☆142Updated 6 months ago
- WNF Utilities 4 Newbies (WNFUN)☆100Updated 7 years ago
- Toy scripts for playing with WinDbg JS API☆244Updated last year
- Official VirusTotal plugin for IDA Pro☆177Updated this week
- Parse .NET executable files.☆83Updated last week
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆145Updated 5 years ago
- ☆113Updated 5 months ago
- Hyper-V Research is trendy now☆195Updated last year
- Extract AutoIt scripts embedded in PE binaries☆216Updated last year
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆220Updated 3 years ago
- API Logger for Windows Executables☆80Updated 5 years ago
- capemon: CAPE's monitor☆146Updated this week
- Tools for instrumenting Windows Defender's mpengine.dll☆311Updated 7 years ago
- WIP Emotet Control Flow Unflattening using miasm and radare2☆23Updated 3 years ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆119Updated 2 years ago
- Parsers for custom malware formats ("Funky malware formats")☆98Updated 4 years ago
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆184Updated 5 years ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆171Updated this week
- ☆65Updated 2 years ago
- Library and tools to access the Windows Prefetch File (SCCA) format.☆83Updated last month
- A DTrace on Windows Reimplementation☆369Updated 4 months ago
- Set of antianalysis techniques found in malware☆133Updated 2 years ago
- ☆140Updated 4 years ago
- Go Lang Portable Executable Parser☆39Updated 4 years ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆329Updated last year
- IDA Pro plugin for recognizing known hashes of API function names☆83Updated 3 years ago
- ☆130Updated 5 years ago
- MalUnpack companion driver☆99Updated last year
- ☆68Updated 3 years ago
- The history of Windows Internals via symbols.☆181Updated 4 years ago