eronnen / procmon-parser
Parser to process monitor file formats
☆139Updated last year
Alternatives and similar repositories for procmon-parser:
Users that are interested in procmon-parser are comparing it to the libraries listed below
- Toy scripts for playing with WinDbg JS API☆226Updated 8 months ago
- Hyper-V Research is trendy now☆178Updated 10 months ago
- Bindings for Microsoft WinDBG TTD☆217Updated last year
- Hyper-V scripts☆116Updated last year
- Official VirusTotal plugin for IDA Pro☆157Updated last year
- Named pipe I/O ETW provider for Windows☆70Updated 4 years ago
- Hyper-V Research is trendy now☆159Updated 2 weeks ago
- Parse .NET executable files.☆76Updated last month
- WNF Utilities 4 Newbies (WNFUN)☆94Updated 6 years ago
- ☆105Updated last year
- ☆126Updated 5 months ago
- A DTrace on Windows Reimplementation☆342Updated last month
- A collection of my IDA plugins☆134Updated 4 years ago
- A bunch of JavaScript extensions for WinDbg.☆331Updated 4 months ago
- Native Python3 bindings for @horsicq's Detect-It-Easy☆62Updated 2 weeks ago
- A Windows kernel dump C++ parser library with Python 3 bindings.☆199Updated 8 months ago
- Useful scripts for WinDbg using the debugger data model☆408Updated last year
- Simple windows API logger☆101Updated 5 years ago
- An IDA Pro extension for easier (malware) reverse engineering☆111Updated 2 years ago
- A collection of free miscellaneous Windows tools☆131Updated 7 months ago
- ☆67Updated 2 years ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆139Updated 6 years ago
- (unofficial) Hyper-V® Development Kit☆217Updated last year
- Static Binary Instrumentation tool for Windows x64 executables☆198Updated last month
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆181Updated 4 years ago
- A tool that automates regex generation for the x86 and x86-64 instruction sets☆70Updated 11 months ago
- Parsers for custom malware formats ("Funky malware formats")☆96Updated 3 years ago
- A command tree based on commands and extensions for Windows Kernel Debugging.☆107Updated 4 years ago
- IDA plugin for quickly copying disassembly as encoded hex bytes☆60Updated 3 years ago
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆136Updated 2 years ago