libyal / libfwevt
Library for Windows XML Event Log (EVTX) data types
☆18Updated 6 months ago
Alternatives and similar repositories for libfwevt:
Users that are interested in libfwevt are comparing it to the libraries listed below
- ☆24Updated 5 years ago
- Common Malware Techniques☆13Updated 2 years ago
- Shellcode injection using debugging APIs☆19Updated 11 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14Updated 4 years ago
- Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.☆23Updated 4 years ago
- D00☆6Updated 3 years ago
- ☆16Updated 7 years ago
- C++ WinSock2 PCAP with RDI☆13Updated 8 years ago
- ☆10Updated 10 years ago
- Enumerate all processes and get specified file's handle,then close it.☆11Updated 6 years ago
- ☆10Updated 7 years ago
- Code Injector Using Code Caves☆14Updated 9 years ago
- Rekall Memory Forensic Framework☆32Updated 5 years ago
- Hyper-V virtual switch packet capturing extension with libpcap / Wireshark format☆12Updated 10 years ago
- Dumps information about all the callback objects found in a dump file and the functions registered for them☆35Updated 4 years ago
- ☆19Updated 5 years ago
- ☆32Updated 8 years ago
- Experimental Windows .text section Patch Detector☆21Updated 10 years ago
- Post-explotation Hacks☆14Updated 6 years ago
- ☆17Updated 5 years ago
- An example of PE hollowing injection technique☆23Updated 5 years ago
- Framework complet d'analyse de malware☆12Updated 9 years ago
- RunPE dump - I wrote this to have better control over the analysis of malwares. I can stop and analysis malware when it uses some of the …☆10Updated 9 years ago
- Self-Loading Registration Free COM Functions☆11Updated 5 years ago
- ☆13Updated 7 years ago
- Protects and logs suspicious and malicious usage of .NET CSC.exe and Runtime C# Compilation☆25Updated 6 years ago
- it's a simple LKM rootkit.☆12Updated 8 years ago
- Capture Webcam Reflective Dll☆8Updated 8 years ago
- Python script to patch the reflective stub in a DLL☆24Updated 8 years ago
- A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.☆19Updated 7 years ago