#

etw

https://static.github-zh.com/github_avatars/rabbitstack?size=40
Go 2.38 k
6 天前
xoofx/ultra
https://static.github-zh.com/github_avatars/xoofx?size=40

An advanced profiler for .NET Applications on Windows

C# 1.09 k
9 个月前
https://static.github-zh.com/github_avatars/microsoft?size=40

KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.

C++ 699
6 个月前
https://static.github-zh.com/github_avatars/lowleveldesign?size=40

Command line tracing tool for Windows, based on ETW.

C# 684
1 个月前
https://static.github-zh.com/github_avatars/airbus-cert?size=40

A wireshark plugin to instrument ETW

Lua 568
4 年前
https://static.github-zh.com/github_avatars/H4NM?size=40

Records an executable's network activity into a Full Packet Capture file (.pcap) and much more.

C# 428
5 个月前
https://static.github-zh.com/github_avatars/nasbench?size=40
Python 397
1 年前
https://static.github-zh.com/github_avatars/wecooperate?size=40

The world's most powerful System Activity Monitor Engine · 一款功能强大的终端行为采集防御开发套件 ~ 旨在帮助EDR、零信任、数据安全、审计管控等终端安全软件可以快速实现产品功能, 而不用关心底层驱动的开发、维护和兼容性问题,让其可以专注于业务开发

C++ 363
7 个月前
https://static.github-zh.com/github_avatars/lowleveldesign?size=40

My notes on software troubleshooting, covering debugging and tracing techniques and tools. Available at wtrace.net.

HTML 337
21 天前
https://static.github-zh.com/github_avatars/DamonMohammadbagher?size=40

ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection & Payload Detection by VirtualMemAlloc Events (in-memory) etc.

C# 306
1 年前
https://static.github-zh.com/github_avatars/fireeye?size=40
Python 290
2 年前
https://static.github-zh.com/github_avatars/nettitude?size=40

C# POC to extract NetNTLMv1/v2 hashes from ETW provider

C# 258
2 年前
https://static.github-zh.com/github_avatars/repnz?size=40
C 247
5 年前
https://static.github-zh.com/github_avatars/okieselbach?size=40

A small real time SyncML protocol Viewer

C# 196
8 个月前
https://static.github-zh.com/github_avatars/lahell?size=40

Capture and parse CDP and LLDP packets on local or remote computers

PowerShell 187
2 年前
https://static.github-zh.com/github_avatars/DamonMohammadbagher?size=40

Meterpreter_Payload_Detection.exe tool for detecting Meterpreter in memory like IPS-IDS and Forensics tool

C# 163
2 年前
https://static.github-zh.com/github_avatars/huoji120?size=40

让Etwhook再次伟大! Make InfinityHook Great Again!

C++ 142
4 年前
loading...
Website
Wikipedia