luctalpe / WMIMon
Tool to monitor WMI activity on Windows
☆281Updated 4 years ago
Alternatives and similar repositories for WMIMon:
Users that are interested in WMIMon are comparing it to the libraries listed below
- A PowerShell module to facilitate building, configuring, deploying, and auditing Windows Defender Application Control (WDAC) policies☆215Updated 3 years ago
- Documentation and tools to access Windows Defender Application Control (WDAC) technology.☆229Updated this week
- A collection of free miscellaneous Windows tools☆134Updated 8 months ago
- Module to provide PowerShell functions that abstract Win32 API functions☆246Updated 11 months ago
- Events from all manifest-based and mof-based ETW providers across Windows 10 versions☆297Updated last year
- Microsoft Message Analyzer EOL Archive☆161Updated 5 years ago
- Full featured, offline Registry parser in C#☆229Updated 4 months ago
- Expand compressed files from WinSxS folder☆158Updated 10 months ago
- Custom ADMX template focused on hardening Windows 10 & Windows 11 systems☆82Updated this week
- PowerShell module for creating and managing Sysinternals Sysmon config files.☆207Updated 4 years ago
- Windows Registry Knowledge Base☆173Updated 7 months ago
- ☆789Updated 5 years ago
- 🚀AutoRuns is a PowerShell module that will help do live incident response and enumerate autoruns artifacts that may be used by legitima…☆270Updated 4 months ago
- A set of troubleshooting, diagnostic, and information utilities for Windows☆56Updated last month
- A collection of Windows software baseline notes with corresponding Windows Defender Application Control (WDAC) policies☆62Updated last year
- A reference Device Guard code integrity policy consisting of FilePublisher deny rules for published Device Guard configuration bypasses☆115Updated 7 years ago
- Easily define in-memory enums, structs, and Win32 functions in PowerShell☆222Updated 6 years ago
- Windows Prefetch parser. Supports all known versions from Windows XP to Windows 10.☆113Updated 4 months ago
- AppCompatCache (shimcache) parser. Supports Windows 7 (x86 and x64), Windows 8.x, and Windows 10☆117Updated 3 months ago
- Module used for management of wireless profiles☆97Updated 3 months ago
- Sysmon Tools for PowerShell☆229Updated 6 years ago
- Windows registry file format specification☆337Updated 6 years ago
- PSEventViewer (Get-Events) is really useful PowerShell wrapper around Get-WinEvent. One of the features you may be interested in is a sim…☆113Updated 4 months ago
- Windows 10 (v1803+) ActivitiesCache.db parsers (SQLite, PowerShell, .EXE)☆189Updated 2 years ago
- PowerShell Module with custom functions and cmdlets related to Windows and application security.☆77Updated 8 months ago
- Scripts and tools for use with Microsoft products/technologies☆259Updated last week
- A mix of scripts/tools I've made, put together or simply found online☆116Updated 5 months ago
- PowerShell Module to interact with VirusTotal☆119Updated 5 years ago
- View ETW Provider manifest☆482Updated 6 months ago
- ☆257Updated 5 months ago