A Rust parser for Notepad TabState artifact
Rhaegal is a tool used to scan Windows Event Logs for suspicious logs. Rhaegal uses custom rule format to detect suspicious/malicious logs
EventLogMonitor hooks into Windows Event Logs and displays new events as they are written to the log
collection of structs and utilities for parsing windows binary formats.
Full rust implementation to parse windows LNK files
A rust parser for CryptnetURLCache metadata files.