mattifestation / MSFTTraceMessageFormat
All TMF files that I extracted from Microsoft PDBs.
☆12Updated 5 years ago
Alternatives and similar repositories for MSFTTraceMessageFormat:
Users that are interested in MSFTTraceMessageFormat are comparing it to the libraries listed below
- windows-operating-system-archaeology @Enigma0x3 @subTee☆44Updated 7 years ago
- A PowerShell module to assist in parsing and managing catalog files.☆22Updated 8 years ago
- Event metadata collected across all manifest-based ETW providers on Window 10 1903☆31Updated 5 years ago
- Loads the AutoIt DLL and PowerShell assemblies into memory and executes the specified keystrokes☆60Updated 7 years ago
- Privilege Escilation training project, with an emphasis on the distinction between vulnerability research & it's exposure and exploitatio…☆35Updated 8 years ago
- A PowerShell binding for the Unicorn Engine☆17Updated 9 years ago
- Programmatically access a TLS certificate chain in C++ and C#☆13Updated 6 years ago
- module for certexfil☆15Updated 2 years ago
- ☆26Updated 6 years ago
- Microsoft Office (MAPI, WOPI, and FSSHTTP) inspectors for Fiddler☆9Updated last year
- Scans through registry hives outputting entropy values for key/values, dumps binary contents to files...we are looking for those "fileles…☆11Updated 6 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆30Updated 4 years ago
- ☆36Updated 5 years ago
- The hidden mstsc recorder player☆28Updated 4 years ago
- Emu-strings project - JScript/VBScript automated dropper analysis system☆17Updated 3 years ago
- A PowerShell script to prevent Sysmon from writing its events☆14Updated 4 years ago
- A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed☆16Updated 8 years ago
- Set of ultra technical notes about AD☆18Updated 6 years ago
- Cheat-Sheet with events too look out for when analysing malicious Office documents☆19Updated 7 years ago
- ☆24Updated 6 years ago
- This is a simple tool to dump all the reparse points on an NTFS volume.☆31Updated 4 years ago
- A simple shellcode runner☆20Updated 10 years ago
- Babel-Shellfish deobfuscates and scans Powershell scripts on real-time right before each line execution.☆41Updated 6 years ago
- .NET tool for enumeration processes and dumping memory.☆56Updated 5 years ago
- ☆16Updated 7 years ago
- B-Sides CBR 2018 talk about group policy and Grouper☆39Updated 5 years ago