eronnen / procmon-parser
Parser to process monitor file formats
☆134Updated last year
Alternatives and similar repositories for procmon-parser:
Users that are interested in procmon-parser are comparing it to the libraries listed below
- Hyper-V Research is trendy now☆176Updated 8 months ago
- ☆103Updated last year
- Named pipe I/O ETW provider for Windows☆69Updated 4 years ago
- Toy scripts for playing with WinDbg JS API☆221Updated 6 months ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆279Updated 8 months ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆129Updated 4 years ago
- Simple windows API logger☆98Updated 5 years ago
- Hyper-V Research is trendy now☆156Updated last week
- ☆68Updated 2 years ago
- IDA Pro plugin for recognizing known hashes of API function names☆82Updated 2 years ago
- Bindings for Microsoft WinDBG TTD☆217Updated last year
- ☆123Updated 3 months ago
- Static Binary Instrumentation tool for Windows x64 executables☆193Updated 2 months ago
- A bunch of JavaScript extensions for WinDbg.☆325Updated last month
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆134Updated last year
- WNF Utilities 4 Newbies (WNFUN)☆92Updated 6 years ago
- ☆107Updated 4 years ago
- Hyper-V scripts☆113Updated last year
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆212Updated 5 years ago
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆197Updated 2 years ago
- Windbg2ida lets you dump each step in Windbg then shows these steps in IDA☆75Updated 6 months ago
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆180Updated 4 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆139Updated 5 years ago
- A collection of free miscellaneous Windows tools☆128Updated 4 months ago
- Parsers for custom malware formats ("Funky malware formats")☆92Updated 3 years ago
- Parse .NET executable files.☆74Updated 2 months ago
- A command tree based on commands and extensions for Windows Kernel Debugging.☆106Updated 4 years ago
- IDA plugin for quickly copying disassembly as encoded hex bytes☆59Updated 2 years ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆115Updated last year
- Official VirusTotal plugin for IDA Pro☆156Updated last year