Velocidex / go-ntfs
An NTFS file parser in Go
☆67Updated this week
Alternatives and similar repositories for go-ntfs:
Users that are interested in go-ntfs are comparing it to the libraries listed below
- NTFS Master File Table (MFT) parser for Go.☆43Updated 5 months ago
- gyp: A pure Go YARA parser☆106Updated 11 months ago
- Golang parser for OLE files☆31Updated 7 months ago
- A Portable Executable parser for Golang☆47Updated last month
- 📚 A collection of tools and libraries to parse filesystems, archives and other data types☆20Updated 3 months ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 3 years ago
- Windows Volume Management libraries for the Go language☆26Updated last year
- Go implementation of an Extensible Storage Engine parser☆28Updated 4 months ago
- A golang implementation of a prefetch parser.☆19Updated 5 months ago
- A Golang Registry parser☆14Updated last week
- Go library for ETW (Event Tracing for Windows) events processing☆62Updated 2 years ago
- Collect autorun records from running system☆59Updated 3 years ago
- Go library for subscribing to Windows Event Log☆29Updated 5 years ago
- Golang Parser for Microsoft Event Logs☆101Updated 3 weeks ago
- Extract resources from PE files☆30Updated 5 years ago
- Golang port of PEFile☆29Updated 4 years ago
- Go library MalShare API☆12Updated 5 years ago
- Wrapper for TSK (Sleuth Kit) Bindings☆11Updated 2 years ago
- ☆164Updated 2 years ago
- Golang wrappers functions to call Windows APIs☆76Updated 2 years ago
- tiny wrapper around Windows Management Instrumentation API☆13Updated 6 years ago
- Resident (inotify) Anti-Malware Scanner using rules from Linux Malware Detect project☆11Updated 10 years ago
- ICMP scan all hosts across a given subnet in Go (golang)☆29Updated 5 years ago
- Go interface to NTDLL functions☆73Updated 9 months ago
- A library implementing a generic SQL like query language.☆20Updated last week
- Signature engine for all your logs☆167Updated last year
- A Go implementation and parser for Sigma rules.☆86Updated 5 months ago
- eBPF-based EDR for Linux☆16Updated 5 months ago
- Golang package for parsing Windows shell link binary (lnk or Windows shortcut) files.☆37Updated 2 years ago
- Call virtual methods on C++ classes from Go without cgo.☆82Updated last year