jborean93 / PSDetour-Hooks
Auditing Hooks for https://github.com/jborean93/PSDetour
☆12Updated 4 months ago
Alternatives and similar repositories for PSDetour-Hooks:
Users that are interested in PSDetour-Hooks are comparing it to the libraries listed below
- ☆27Updated 2 years ago
- Cmdlets for capturing Windows Events☆14Updated 3 years ago
- Windows Detour Hooking in PowerShell☆78Updated 9 months ago
- Code samples that serve as references for Windows API functions☆30Updated 9 months ago
- Lets you write arbitrary registry entries to Group Policy related .pol files (e.g. registry.pol)☆11Updated 5 years ago
- Read ETW Provider events. Inspired by ETWExplorer by Pavel Yosifovich☆14Updated 8 months ago
- D00☆6Updated 3 years ago
- run process as PPL Antimalware☆10Updated last year
- ☆17Updated 5 years ago
- Research into COM☆19Updated 5 years ago
- Repository of Microsoft Driver Block Lists based off of OS-builds☆39Updated 11 months ago
- A tool for leveraging elevated acess over a computer to boot the computer into Windows Safe Mode, alter settings, and then boot back into…☆16Updated 3 years ago
- Example/starter code for custom Windows application compatibility shims☆33Updated 4 years ago
- Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.☆23Updated 4 years ago
- Info on how to use Kerberos KDC on a non-domain joined host☆43Updated 7 months ago
- AD Live changes viewer☆35Updated 2 years ago
- Parser for Windows PowerShell script block logs☆13Updated 2 months ago
- Rust PowerShell Hosting Library☆16Updated 6 months ago
- Registry hive parsing the async way☆21Updated last week
- Takes the original idea of NetCease and adds functionality☆24Updated 3 years ago
- PowerShell ETW consumer module☆28Updated last year
- Asynchronous named pipe module for PowerShell☆20Updated 8 years ago
- A PowerShell module that uses the WIN_API to access the registry☆14Updated 7 years ago
- Platform independent library for interfacing windows security descriptors☆16Updated 2 months ago
- ☆18Updated 2 months ago
- Simple and sane cryptographic wrapper library.☆27Updated last year
- AppContainer tools for launching sandboxed win32 apps, changing ACL permissions and learning from ETW traces.☆19Updated last month
- really ?☆12Updated last year
- An example of Windows self-replicating malware.☆10Updated 2 years ago
- PowerShell snippets☆15Updated 4 months ago