n4r1b / ferrisetwLinks
Basically a KrabsETW rip-off written in Rust
☆75Updated 2 weeks ago
Alternatives and similar repositories for ferrisetw
Users that are interested in ferrisetw are comparing it to the libraries listed below
Sorting:
- The PE Executable Library, but for Rust!☆80Updated last year
- Rust bindings to the System Informer's (formerly known as Process Hacker) "phnt" native Windows headers☆47Updated 3 months ago
- Rust FFI bindings for Native API☆114Updated 2 years ago
- A Rust library for parsing and writing MS Shell Links (shortcuts, *.lnk)☆33Updated 3 weeks ago
- The source code for my blog post 'Writing a kernel driver with Rust.'☆138Updated 2 years ago
- SCEMU The crates.io lib, x86 cpu and systems emulator focused mainly for anti-malware☆46Updated 8 months ago
- Windows Native Undocumented API for Rust Language 🔥☆43Updated last year
- ☆63Updated last year
- Rust bindings for VirusTotal/Yara☆78Updated 6 months ago
- A document tagging library☆30Updated 5 months ago
- Structured Exception Handling (SEH) for Rust☆65Updated 11 months ago
- Minimalistic Windows Kernel Allocator.☆49Updated last year
- A parser for the MFT (Master File Table) format☆145Updated 2 years ago
- CallMon is an experimental system call monitoring tool that works on Windows 10 versions 2004+ using PsAltSystemCallHandlers☆147Updated 5 years ago
- Examples on how to write Windows kernel drivers in Rust☆242Updated last year
- Zydis Rust Bindings☆93Updated last year
- Windows Hypervisor Platform Rust crate☆59Updated 5 years ago
- intel x86(-64) code analysis library that reconstructs control flow☆107Updated 3 months ago
- Module to generate and verify Authenticode signatures☆82Updated 3 weeks ago
- A rust based DLL injection project☆30Updated 3 years ago
- Leverage AMSI (Antimalware Scan Interface) technology to aid your analysis. This tool saves all buffers (scripts, .NET assemblies, etc) …☆112Updated 4 years ago
- Windows Drivers☆99Updated 6 years ago
- Utility functions for building Windows kernel drivers in Rust☆21Updated 3 years ago
- A DTrace on Windows Reimplementation☆358Updated 7 months ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆35Updated 4 years ago
- Metadata hash incorporating the Rich Header for robustness against packing and other malware tricks☆68Updated 4 years ago
- Use YARA rules on Time Travel Debugging traces☆92Updated 2 years ago
- Template for UEFI runtime drivers written in Rust with serial logging and debugging support.☆61Updated 4 years ago
- ☆47Updated 2 years ago
- Load a DLL from memory☆37Updated 3 years ago