n4r1b / ferrisetwLinks
Basically a KrabsETW rip-off written in Rust
☆70Updated 10 months ago
Alternatives and similar repositories for ferrisetw
Users that are interested in ferrisetw are comparing it to the libraries listed below
Sorting:
- The PE Executable Library, but for Rust!☆77Updated last year
- Rust bindings to the System Informer's (formerly known as Process Hacker) "phnt" native Windows headers☆45Updated 3 weeks ago
- Zydis Rust Bindings☆93Updated last year
- Rust FFI bindings for Native API☆112Updated 2 years ago
- Rust bindings to Windows API☆19Updated 6 years ago
- intel x86(-64) code analysis library that reconstructs control flow☆103Updated 2 weeks ago
- Structured Exception Handling (SEH) for Rust☆61Updated 8 months ago
- dump all available information from PDBs☆132Updated last year
- ☆90Updated last year
- A Rust library for parsing and writing MS Shell Links (shortcuts, *.lnk)☆31Updated last month
- Windows Native Undocumented API for Rust Language 🔥☆40Updated 10 months ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆35Updated 4 years ago
- Faster version of `symchk /om` for generating PDB manifests of offline machines☆56Updated 2 months ago
- Use YARA rules on Time Travel Debugging traces☆91Updated last year
- SCEMU The crates.io lib, x86 cpu and systems emulator focused mainly for anti-malware☆45Updated 5 months ago
- Examples on how to write Windows kernel drivers in Rust☆223Updated last year
- clean interface for the windows event log☆24Updated last year
- A binary analysis framework written in Rust.☆20Updated last year
- Rust bindings for VirusTotal/Yara☆77Updated 3 months ago
- Allows Rust code to log events to ETW☆104Updated last month
- Windows Hypervisor Platform Rust crate☆59Updated 4 years ago
- Modular and extensible library for Virtual Machine Introspection☆105Updated last month
- Load DLLs from memory with rust☆139Updated 3 years ago
- Simple windows API logger☆104Updated 5 years ago
- Utility functions for building Windows kernel drivers in Rust☆21Updated 3 years ago
- Named pipe I/O ETW provider for Windows☆70Updated 4 years ago
- A PoC Windows Minifilter Driver in pure Rust (Don't use it in production)☆51Updated last year
- x86-64 virtualizing obfuscator written in Rust☆78Updated last year
- ☆25Updated last year
- A parser for the MFT (Master File Table) format☆140Updated last year