eronnen / procmon-parserLinks
Parser to process monitor file formats
☆148Updated 2 years ago
Alternatives and similar repositories for procmon-parser
Users that are interested in procmon-parser are comparing it to the libraries listed below
Sorting:
- WNF Utilities 4 Newbies (WNFUN)☆95Updated 6 years ago
- Official VirusTotal plugin for IDA Pro☆158Updated last year
- A collection of free miscellaneous Windows tools☆135Updated 10 months ago
- Parsers for custom malware formats ("Funky malware formats")☆96Updated 3 years ago
- Hyper-V Research is trendy now☆182Updated last year
- ☆71Updated last year
- Parse .NET executable files.☆76Updated last week
- Two IDAPython Scripts help you to reconstruct Microsoft COM (Component Object Model) Code☆184Updated 4 years ago
- Named pipe I/O ETW provider for Windows☆70Updated 4 years ago
- ☆106Updated last year
- Toy scripts for playing with WinDbg JS API☆235Updated last year
- ☆68Updated 3 years ago
- ☆119Updated 4 years ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆145Updated 4 years ago
- Extract AutoIt scripts embedded in PE binaries☆187Updated last year
- ☆138Updated 3 years ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆302Updated last year
- An application to view and filter pool allocations from a dmp file on Windows 10 RS5+.☆141Updated 2 years ago
- Driver Initial Reconnaissance Tool☆123Updated 5 years ago
- GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.☆116Updated 2 years ago
- API Logger for Windows Executables☆78Updated 4 years ago
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆211Updated 3 years ago
- Go Lang Portable Executable Parser☆39Updated 4 years ago
- IDA Pro plugin for recognizing known hashes of API function names☆81Updated 3 years ago
- Hyper-V scripts☆125Updated 2 weeks ago
- Metadata hash incorporating the Rich Header for robustness against packing and other malware tricks☆65Updated 3 years ago
- Native Python3 bindings for @horsicq's Detect-It-Easy☆72Updated 2 months ago
- IDA python plugin to scan binary with Yara rules☆177Updated last year
- An IDA Pro extension for easier (malware) reverse engineering☆115Updated 2 years ago
- Set of antianalysis techniques found in malware☆132Updated last year