0xHasanM / Autopsy-Registry-Explorer
Autopsy Module to analyze Registry Hives
☆15Updated 3 years ago
Alternatives and similar repositories for Autopsy-Registry-Explorer:
Users that are interested in Autopsy-Registry-Explorer are comparing it to the libraries listed below
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago
- Collection of tips, tools, arsenal and techniques I've learned during RE and other CyberSecStuff☆54Updated last month
- A collection of my presentation materials.☆16Updated 10 months ago
- Static Decryptor for IcedID Malware☆18Updated 2 years ago
- ☆17Updated 6 months ago
- Parser for Sdba memory pool tags☆17Updated 3 years ago
- A set of tools for collecting forensic information☆26Updated 4 years ago
- ProcDot Malware Sandbox☆22Updated 3 months ago
- Parser for Windows PowerShell script block logs☆13Updated 2 months ago
- ☆22Updated 4 years ago
- A cap/pcap packet parser to make life easier when performing stealth/passive reconnaissance.☆21Updated 7 months ago
- Defeating Anti-Debugging Techniques for Malware Analysis☆13Updated 2 years ago
- Repository for LNK stuff☆29Updated 2 years ago
- ☆11Updated 4 years ago
- ☆15Updated 3 years ago
- The repository accompanying the Buer Emulation workshop☆24Updated 3 years ago
- Help deobfuscate VBScript☆15Updated 2 years ago
- ☆12Updated 2 years ago
- Data from analysis of the custom sample from the chapter "Practical Analysis and Test"☆12Updated 4 years ago
- Slides from my talk at the Adversary Village, Defcon 30☆29Updated 2 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆15Updated last year
- Hash collisions and their exploitations☆9Updated 2 years ago
- ☆12Updated 3 years ago
- just manipulatin these here tokens yes sir nothing weird☆22Updated 2 years ago
- ☆23Updated 4 years ago
- ☆18Updated last month
- Rapidly building a Windows 10 system to use for dynamic malware analysis (sandbox), sending data to Elastic Cloud.☆48Updated last year
- Speaking materials from conferences I've given☆9Updated 2 years ago
- Proof of concept - Covert Channel using Windows Filtering Platform (C#)☆21Updated 3 years ago
- Extracts Azure authentication tokens from PowerShell process minidumps.☆23Updated last year