libyal / libfwevt
Library for Windows XML Event Log (EVTX) data types
☆18Updated 7 months ago
Alternatives and similar repositories for libfwevt:
Users that are interested in libfwevt are comparing it to the libraries listed below
- Common Malware Techniques☆13Updated 2 years ago
- ☆16Updated 7 years ago
- Shellcode injection using debugging APIs☆19Updated 11 years ago
- Windows x64 Process Scanner to detect application compatability shims☆37Updated 6 years ago
- 🐧 A simple kernel-level rootkit☆20Updated 9 years ago
- it's a simple LKM rootkit.☆12Updated 8 years ago
- ☆24Updated 5 years ago
- Dumps information about all the callback objects found in a dump file and the functions registered for them☆35Updated 4 years ago
- C++ WinSock2 PCAP with RDI☆13Updated 8 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆15Updated 4 years ago
- Simple tool to use LsaManageSidNameMapping get LSA to add or remove SID to name mappings.☆23Updated 4 years ago
- D00☆6Updated 3 years ago
- ☆10Updated 7 years ago
- A POC for Windows Extension Host hooking☆22Updated 5 years ago
- just a basic rootkit for learning how to playing sys_call_table☆14Updated 8 years ago
- ☆13Updated 7 years ago
- Experimental Windows .text section Patch Detector☆21Updated 10 years ago
- ☆32Updated 8 years ago
- A new binary injection technique, can easily go through any #CIG protected process and slip through all possible defenses without any inj…☆18Updated 7 years ago
- SDBbot Unpacker Python 2.7☆9Updated 4 years ago
- ☆45Updated 6 years ago
- Kernel mode windows NT API logger☆22Updated 5 years ago
- ☆22Updated 4 years ago
- Protects and logs suspicious and malicious usage of .NET CSC.exe and Runtime C# Compilation☆25Updated 7 years ago
- ☆33Updated 7 years ago
- Create COM Objects backed by Scripts, not DLLs☆9Updated 7 years ago
- Code Injector Using Code Caves☆14Updated 9 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆31Updated 4 years ago
- Self-Loading Registration Free COM Functions☆11Updated 5 years ago
- An example of PE hollowing injection technique☆23Updated 5 years ago