janstarke / evtxviewLinks
evtxview is a GUI viewer for Microsoft Windows evtx files (Windows event logs). I'm hacking this tiny tool because I need such a tool in most forensic investigations.
☆15Updated 5 years ago
Alternatives and similar repositories for evtxview
Users that are interested in evtxview are comparing it to the libraries listed below
Sorting:
- ☆30Updated 3 years ago
- Dump certificates from PE files in different formats☆38Updated 2 years ago
- A console debugger using DbgX and Terminal.Gui☆30Updated 3 years ago
- A modified fork of Be.HexEditor for use in debug tools☆14Updated 4 years ago
- ComPower is a Windows PowerShell module to work with the Component Object Model (COM).☆32Updated 11 years ago
- Auditing Hooks for https://github.com/jborean93/PSDetour☆13Updated 9 months ago
- ☆44Updated 2 years ago
- Diff tool for comparing symbols in PDB files☆84Updated 5 years ago
- BgInfo is a WPF variant on the Sysinternals BgInfo tool.☆32Updated 4 years ago
- Windows Detour Hooking in PowerShell☆82Updated last month
- Brute Force password recovery for exported Windows PFX certificates☆17Updated 9 years ago
- PowerShell Over WMI☆16Updated 6 years ago
- .NET wrapper for dbghelp.dll☆21Updated 6 years ago
- Set of scripts for performance investigations on Windows.☆32Updated last month
- Automatic/Custom Destinations & LNK (MS-SHLLINK) Browser☆41Updated last year
- An attempt to create a friendly version of WinDbg☆107Updated 7 years ago
- Library to process OLE compound file format. This is a work in progress and was initially written for jumplist parsing (for which it does…☆19Updated last year
- Win32 memory leak detector with ETW☆47Updated 8 years ago
- Managed wrappers around the Windows API and some Native API☆35Updated 7 years ago
- AD Live changes viewer☆36Updated 2 years ago
- Cmdlets for capturing Windows Events☆14Updated 3 years ago
- Scripts to prepare Windows system for debugging.☆31Updated 5 years ago
- BITS Transfers Manager☆45Updated 8 months ago
- AppLocker baseline configuration with the AaronLocker module. Used for testing with Windows 10, Intune etc.☆20Updated 2 months ago
- PerfMonX is an enhanced Performance Monitor tool☆44Updated 7 years ago
- collection of links related to using and improving windbg☆20Updated 7 years ago
- Portable Executable parsing library, used by PEExplorer. Also available as a nuget package☆36Updated 8 years ago
- ☆19Updated 2 years ago
- This tool is a user-friendly Graphical User Interface (GUI) tool that simplifies and streamlines the process of digitally signing files u…☆96Updated last month
- An x64dbg plugin which marks XFG call signatures as data☆78Updated 2 years ago