eronnen / procmon-parser
Parser to process monitor file formats
☆128Updated last year
Related projects ⓘ
Alternatives and complementary repositories for procmon-parser
- Hyper-V Research is trendy now☆172Updated 6 months ago
- ☆68Updated 2 years ago
- WNF Utilities 4 Newbies (WNFUN)☆92Updated 5 years ago
- ☆107Updated 4 years ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆129Updated 4 years ago
- Named pipe I/O ETW provider for Windows☆67Updated 4 years ago
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆178Updated 4 years ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆268Updated 6 months ago
- Hyper-V Research is trendy now☆150Updated last month
- ☆120Updated last month
- Toy scripts for playing with WinDbg JS API☆220Updated 4 months ago
- Hyper-V scripts☆112Updated last year
- A collection of free miscellaneous Windows tools☆123Updated 3 months ago
- APC Internals Research Code☆158Updated 4 years ago
- A command tree based on commands and extensions for Windows Kernel Debugging.☆105Updated 4 years ago
- 0CCh Windbg extension: include some useful commands☆109Updated last year
- The history of Windows Internals via symbols.☆177Updated 3 years ago
- Parse .NET executable files.☆74Updated last week
- Simple windows API logger☆98Updated 5 years ago
- Parsers for custom malware formats ("Funky malware formats")☆92Updated 2 years ago
- A collection of my IDA plugins☆131Updated 4 years ago
- Some research on AltSystemCallHandlers functionality in Windows 10 20H1 18999☆205Updated 5 years ago
- The content of this repository aims to assist efforts on analysing inner working principles, functionalities, and properties of the Micro…☆150Updated 4 years ago
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆196Updated 2 years ago
- ☆100Updated last year
- A bunch of JavaScript extensions for WinDbg.☆320Updated 3 years ago
- ☆93Updated 3 years ago
- Driver Initial Reconnaissance Tool☆120Updated 4 years ago
- Windbg2ida lets you dump each step in Windbg then shows these steps in IDA☆73Updated 4 months ago
- Simple project that demonstrates how an ETW consumer can be created just by using NTDLL☆135Updated 5 years ago