ohjeongwook / WindowsEventToolsLinks
Collection Of Scripts And Utilities For Windows Event Hunting
☆18Updated 5 years ago
Alternatives and similar repositories for WindowsEventTools
Users that are interested in WindowsEventTools are comparing it to the libraries listed below
Sorting:
- This script will pull and analyze syscalls in given application(s) allowing for easier security research purposes☆21Updated 4 years ago
- Do the unexpected with AD GPO processing☆9Updated 6 years ago
- Generate MAEC XML from Ero Carrera's pefile output☆15Updated 8 years ago
- module for certexfil☆15Updated 3 years ago
- Get a list of installed software in a safe manner☆11Updated 7 years ago
- ☆12Updated 4 years ago
- Useful Windows and AD tools☆15Updated 3 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14Updated 5 years ago
- Retrieve the IIS Application Pool Credentials. Relies on the WebAdministration PowerShell Module.☆14Updated 7 years ago
- Automated Payload Test Controller☆10Updated 8 years ago
- Speaking materials from conferences I've given☆9Updated 2 years ago
- Toolkit to detected abnormal activities on a Windows machine.☆11Updated 9 years ago
- smtp-user-enum.pl ported into a recon-ng module.☆9Updated 11 years ago
- Lets you write arbitrary registry entries to Group Policy related .pol files (e.g. registry.pol)☆11Updated 5 years ago
- This repo exists as a quick and dirty arsenal of methods and scripts to subvert .NET SSL/TLS certificate validation in PowerShell and pre…☆11Updated 8 years ago
- Backdoor detection for VMware view☆13Updated 3 years ago
- Manticore's Public Threats Repository☆10Updated 4 years ago
- Removal of certain event logs within a Windows OS☆8Updated 5 years ago
- ☆20Updated 4 years ago
- SSDP Service Discovery☆17Updated 6 years ago
- Starting Code for my How to Write Malware 101 Class. This is a Proof of Concept of a C# RAT (Remote Access Trojan) made by Sean Pierce (@…☆22Updated 7 years ago
- This is a repository for the public blog with Labs indicators of compromise.☆10Updated 5 years ago
- PoC of injecting code into a running Linux process☆23Updated 5 years ago
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 5 years ago
- Metasploit modules, powershell scripts and custom exploit to perform local privilege escalation on windows systems.☆11Updated 8 years ago
- D00☆6Updated 4 years ago
- Frontend to import Nmap Scan in ES, and frontend to make search☆10Updated 10 years ago
- ☆13Updated 4 years ago
- Brute Force and Scan WinRm Service☆13Updated 5 years ago
- windows-operating-system-archaeology @Enigma0x3 @subTee☆46Updated 8 years ago