JamesHabben / EnCaseNetworkFrameworkLinks
This is a framework written in EnScript to utilize the network capabilities of EnCase. The purpose is to allow for someone to build a quick network enabled EnScript to respond quickly to threats with minimal code being written.
☆13Updated 10 years ago
Alternatives and similar repositories for EnCaseNetworkFramework
Users that are interested in EnCaseNetworkFramework are comparing it to the libraries listed below
Sorting:
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- ☆16Updated 10 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- Cli interface to threatcrowd.org☆19Updated 8 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- RegRipper wrapper for simplified bulk parsing or registry hives☆9Updated 6 years ago
- Detect malicious domain, Blablablablabla☆26Updated 8 years ago
- onigiri - remote malware triage script☆24Updated 9 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆23Updated last year
- Extract information from MISP via the API☆15Updated 8 years ago
- Discover potential timestamps within the Windows Registry☆19Updated 11 years ago
- Queries to parse sysmon event log file with microsoft logparser☆56Updated 10 years ago
- Modern Honey Net set-up and configure scripts to automate multiple installs.☆8Updated 7 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Useful scripts, rules etc. for use with YARA☆27Updated 4 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆48Updated 8 years ago
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆44Updated 8 years ago
- Quick & dirty script to get info on a file from online resources (VirusTotal, Team Cymru, Shadow Server etc.)☆30Updated 11 years ago
- Home to the ActorTrackr source code☆24Updated 8 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 5 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 7 years ago
- Fix acquired .evt - Windows Event Log files (Forensics)☆19Updated 9 years ago
- FastIR Agent is a Windows service to execute FastIR Collector on demand☆14Updated 8 years ago
- Automation for VirusTotal☆31Updated 9 years ago
- Command-line Interface for Binar.ly☆38Updated 8 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Why hunt when you can seine?☆21Updated 10 years ago
- Artefacts from various retefe campaigns☆10Updated 6 years ago
- Tools for NTDS.dit☆17Updated 7 years ago
- ☆50Updated 9 years ago