- x86/x64 Windows 8/8.1/10;
- R/W access to the current directory to be able save results;
- Windows Defender Client.
No specific usage required. Just run compiled executable (in command prompt for better experience).
Included dump of following versions:
- AV Signatures: 1.273.443.0 / 1.273.1601.0
- AS Signatures: 1.273.443.0 / 1.273.1601.0
- NIS Signatures: 1.273.443.0 / 1.273.1601.0
Several categories are declared obsolete by MS and families moved to other categories (e.g Nuker category) or messed up with different categories for example TrojanDownloader:Win32/Delf, TrojanDownloader:Win32/Admedia and Trojan:Win32/NewCell in PUA category despite they have Trojan/TrojanDownloader family in their names.
MpEnum comes with full source code written in C. Please note that included MpClient.h is build on official available Microsoft documentation with fixes and updates that actually make it work. It maybe different from MS private version. In order to build from source you need Microsoft Visual Studio 2015 and later versions.
(c) 2018 MpEnum Project