zeronetworks / WTF-WFPLinks
☆24Updated 11 months ago
Alternatives and similar repositories for WTF-WFP
Users that are interested in WTF-WFP are comparing it to the libraries listed below
Sorting:
- The Console Monitor Driver is a KMDF kernel-mode filter driver that captures certain Fast I/O operations (input and output) that is sent …☆41Updated 3 years ago
- Repository of Microsoft Driver Block Lists based off of OS-builds☆40Updated last year
- ☆63Updated last year
- PS-MOTW: PowerShell scripts to set / show / remove MOTW (Mark of the Web)☆49Updated 2 years ago
- AppContainer tools for launching sandboxed win32 apps, changing ACL permissions and learning from ETW traces.☆29Updated 7 months ago
- ☆45Updated 2 years ago
- Windows Detour Hooking in PowerShell☆80Updated last year
- ☆26Updated 2 years ago
- ☆29Updated 3 years ago
- ☆20Updated 6 months ago
- A collection of free miscellaneous Windows tools☆140Updated 4 months ago
- ☆14Updated 2 years ago
- Read ETW Provider events. Inspired by ETWExplorer by Pavel Yosifovich☆17Updated last year
- a tiny program to consume from ETW providers for research☆52Updated 11 months ago
- Run Processes as PPL with ELAM☆173Updated 3 years ago
- Youtube channel sample code☆53Updated last month
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆62Updated 11 months ago
- This tool is the result of a reverse engineering process of the Windows service called SysMain. Time to interact with the prefetch files …☆32Updated 5 years ago
- ☆83Updated last year
- A Practical example of ELAM (Early Launch Anti-Malware)☆35Updated 4 years ago
- ☆180Updated 7 months ago
- Windows Security Descriptor Definition Language (SDDL) parser and formatter☆17Updated 5 years ago
- ☆35Updated 3 years ago
- ☆26Updated 3 years ago
- Research into COM☆19Updated 5 years ago
- ACL Viewer for Windows☆132Updated 7 months ago
- A PowerShell module to facilitate building, configuring, deploying, and auditing Windows Defender Application Control (WDAC) policies☆229Updated 3 years ago
- Windows kernel PDB data parsed into YAML☆41Updated last month
- Python DPAPI NG Decryptor for non-Windows Platforms☆65Updated 11 months ago
- anti-ransomware file-system filter☆67Updated last year