RealityNet / hotoloti
documentation, scripts, tools related to Zena Forensics (http://blog.digital-forensics.it)
☆97Updated 7 years ago
Alternatives and similar repositories for hotoloti:
Users that are interested in hotoloti are comparing it to the libraries listed below
- MantaRay Automated Computer Forensic Triage Tool☆63Updated 6 years ago
- Pure Python parser for classic Windows Event Log files (.evt)☆49Updated last year
- Volatility Plugins☆61Updated last year
- Binaries for the log2timeline projects and dependencies☆39Updated 6 months ago
- general purpose and malware specific analysis tools☆102Updated 9 years ago
- ☆82Updated 8 years ago
- Process HTTP Pcaps With YARA☆102Updated 11 years ago
- Fast incident overview☆39Updated 8 years ago
- PowerShell scripts for Hard Drive forensics and parsing Windows Artifacts☆56Updated 4 years ago
- Utility to retrieve the Master File Table (MFT) from a live running NTFS volume and send it to a netcat listener.☆40Updated 10 years ago
- An advanced memory forensics framework☆95Updated 5 years ago
- Example programs used in the automating DFIR series☆63Updated 6 years ago
- Python script to batch query the Tor Relays and Bridges☆36Updated 6 years ago
- A sort of a toolkit to decrypt Dropbox Windows DBX files☆30Updated 7 years ago
- PE Import Hash Generator☆77Updated 7 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆49Updated 7 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 4 years ago
- Carve NTFS USN records from binary data☆25Updated 7 years ago
- Lite version of PDF X-RAY that uses no backend☆36Updated 13 years ago
- Tools for DFIR☆120Updated 7 years ago
- Tools from WFA 4/e, timeline tools, etc.☆135Updated last year
- Recover event log entries from an image by heurisitically looking for record structures.☆27Updated 9 years ago
- Python IOC Editor☆62Updated 10 years ago
- A python script used to parse the SAM registry hive.☆72Updated 7 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆23Updated last year
- Event Log Analysis Tools☆29Updated 8 years ago
- Collection of my Python Scripts☆41Updated 4 years ago
- Parses IE's Automatic Crash Recovery Files☆16Updated 8 years ago
- Emulates the Sysinternals Autoruns tool, but for DFIR purposes e.g. multi user processing☆55Updated 5 years ago
- Normalizer for honeypot data.☆45Updated 9 years ago