JamesHabben / EnCaseNetworkFrameworkLinks
This is a framework written in EnScript to utilize the network capabilities of EnCase. The purpose is to allow for someone to build a quick network enabled EnScript to respond quickly to threats with minimal code being written.
☆13Updated 10 years ago
Alternatives and similar repositories for EnCaseNetworkFramework
Users that are interested in EnCaseNetworkFramework are comparing it to the libraries listed below
Sorting:
- ☆16Updated 10 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆41Updated 5 years ago
- Server for receiving autorun data from the clients☆13Updated 8 years ago
- Home to the ActorTrackr source code☆24Updated 8 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆25Updated 2 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 6 years ago
- Cli interface to threatcrowd.org☆20Updated 8 years ago
- Discover potential timestamps within the Windows Registry☆19Updated 11 years ago
- Parses Java Cache IDX files☆40Updated 7 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆49Updated 8 years ago
- ☆19Updated 7 years ago
- Automation for VirusTotal☆31Updated 9 years ago
- Detect malicious domain, Blablablablabla☆26Updated 9 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 8 years ago
- onigiri - remote malware triage script☆24Updated 10 years ago
- Maltego Transform to put entities into MISP events☆28Updated 4 years ago
- Metadata Inspection Database Alerting System☆42Updated 12 years ago
- Registry Miner☆14Updated 7 years ago
- BSidesLV 2015 Exploit Kit Analysis Workshop Files☆27Updated 10 years ago
- This repository is a curated list of pro bono incident response entities.☆21Updated 2 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 5 years ago
- Command-line Interface for Binar.ly☆39Updated 9 years ago
- Queries to parse sysmon event log file with microsoft logparser☆58Updated 10 years ago
- Tool for analysts to perform simultaneous lookups (IP, Domain, URL, MD5) against multiple data sources☆29Updated 8 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 11 years ago
- Traceroute improved wrapper for CSIRT and CERT operators☆40Updated last year
- Shared yara rules☆30Updated 11 years ago
- Useful scripts, rules etc. for use with YARA☆27Updated 4 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆44Updated 9 years ago
- A GC link parser for both linkfiles and jumplists.☆18Updated 9 years ago