504ensicsLabs / find_times
Discover potential timestamps within the Windows Registry
☆18Updated 10 years ago
Related projects ⓘ
Alternatives and complementary repositories for find_times
- Volatility Plugin to scan for shimmed processes in Windows☆10Updated 9 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆40Updated 4 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 4 years ago
- ☆16Updated 9 years ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- This repository is a curated list of pro bono incident response entities.☆19Updated last year
- Cli interface to threatcrowd.org☆19Updated 7 years ago
- Collection of single use scripts I worte for windows forensics☆27Updated 12 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 7 years ago
- It is the Distributed Version of Thug, by which all systems across the world running thug will get connect. Then URLs will be distributed…☆24Updated 8 years ago
- Local privilege escalation scripts and tools☆16Updated 8 years ago
- Next Generation of White Chapel☆21Updated 10 years ago
- Quick & dirty script to get info on a file from online resources (VirusTotal, Team Cymru, Shadow Server etc.)☆30Updated 10 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆49Updated 7 years ago
- Digital Forensics and Incident Response Wiki☆39Updated 10 years ago
- DEPRECATED! LOOK AT CREDNINJA! A tool designed to identify if credentials are valid, invalid, or local admin valid credentials within a …☆15Updated 8 years ago
- Why hunt when you can seine?☆21Updated 9 years ago
- See here:☆41Updated 11 years ago
- VPS infrastructure found in HT dumps☆26Updated 9 years ago
- Vagrant configuration to setup a Thug honeyclient VM☆20Updated 9 years ago
- Websocket based egress tester☆20Updated 8 years ago
- This is a copy of the Registry Decoder Live repository from Google Code☆9Updated 9 years ago
- Tools to work with vulnerability standards.☆19Updated 10 years ago
- Threat Intel and Incident Reponse☆10Updated 6 years ago
- miscellaneous scripts and things...☆21Updated 8 years ago
- Detect malicious domain, Blablablablabla☆26Updated 7 years ago