This repo contains various scripts(mostly python) to check for a buffer overflow.
Make sure pwntools installed:
python -m pip install pwntools
For local executable use instead of r = remote("host",port):
r = process("./example")
Script will dump evtx files to xml format(via https://github.com/williballenthin/python-evtx).
keystrokes.py keystrokes.txt
Input file should contain HID data per line sample:
0000150000000000
0000000000000000
2000000000000000
20002d0000000000
2000000000000000
0000000000000000
0000390000000000
0000000000000000
00000e0000000000
0000000000000000
0000200000000000