Ben0xA / PowerShellScripts
Random PowerShell Scripts
☆16Updated 3 years ago
Alternatives and similar repositories for PowerShellScripts
Users that are interested in PowerShellScripts are comparing it to the libraries listed below
Sorting:
- A set of tools for collecting forensic information☆26Updated 5 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆31Updated 4 years ago
- Automatically generated Sysmon parser for Azure Sentinel☆16Updated this week
- Cmdlets for capturing Windows Events☆14Updated 3 years ago
- ☆33Updated 3 years ago
- ☆23Updated last year
- Windows 10 Live Information viewer☆36Updated 3 years ago
- Evtx Log (xml) Browser☆56Updated 2 years ago
- ☆10Updated last year
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆51Updated last year
- Automatic/Custom Destinations & LNK (MS-SHLLINK) Browser☆32Updated last year
- ☆12Updated 3 years ago
- Defensive-oriented Active Directory enumeration☆23Updated 9 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆30Updated 2 years ago
- PS-TrustedDocuments: PowerShell script to handle information on trusted documents for Microsoft Office☆35Updated 2 years ago
- Repo with supporting material for the talk titled "Cracking the Beacon: Automating the extraction of implant configurations"☆11Updated 3 months ago
- PowerShell Script to facilitate the processing of SRUM data for on-the-fly forensics and if needed threat hunting☆23Updated 5 years ago
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 4 years ago
- ☆10Updated 4 years ago
- Threat Mitigation Strategies☆25Updated last year
- Speaking materials from conferences I've given☆9Updated 2 years ago
- Git for me to put all my forensics stuff☆21Updated 3 months ago
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆36Updated last year
- ETW-Almulahaza is a consumer python-based tool that help you monitor ETW events of the operating system☆13Updated 2 years ago
- Parser for Sdba memory pool tags☆18Updated 3 years ago
- PowerShell Module for parsing logs generated by Sysinternals Sysmon for Linux☆36Updated 3 years ago
- Crowdstrike Falcon Host script for iterating through instances to get alert and other relevant data☆13Updated 5 years ago
- Just Another broken Registry Parser (JARP)☆16Updated 11 months ago
- This script will generate hashes (MD5, SHA1, SHA256), submit the MD5 to Virus Total, and produce a text file with the results.☆15Updated last year
- Azure AD Incident Response☆25Updated 3 years ago