abelcheung / rifiuti2Links
Windows Recycle Bin analyser
☆148Updated 2 months ago
Alternatives and similar repositories for rifiuti2
Users that are interested in rifiuti2 are comparing it to the libraries listed below
Sorting:
- exe2powershell - exe2bat reborn for modern Windows☆171Updated 4 years ago
- Parser for $UsnJrnl on NTFS☆111Updated 2 years ago
- Active Directory forensic framework☆326Updated 3 years ago
- Powershell script for enumerating vulnerable DCOM Applications☆260Updated 6 years ago
- Windows RID Hijacking persistence technique☆174Updated 7 months ago
- Allows you to quickly query a Windows machine for RAM artifacts☆221Updated 4 years ago
- Windows Shortcut file (LNK) parser☆135Updated 2 years ago
- ☆347Updated 3 years ago
- Parse evtx files and detect use of the DanderSpritz eventlogedit module☆148Updated 7 years ago
- ☆91Updated 3 years ago
- Windows 10 LPE (UAC Bypass) in Windows Store (WSReset.exe)☆266Updated 5 years ago
- A Bind Shell Using the Fax Service and a DLL Hijack☆331Updated 5 years ago
- Digital forensic acquisition tool for Windows based incident response.☆342Updated last year
- MSBuildShell, a Powershell Host running within MSBuild.exe☆288Updated 5 years ago
- Remove individual lines from Windows XML Event Log (EVTX) files☆270Updated 4 years ago
- PrintDemon is a PoC for a series of issues in the Windows Print Spooler service, as well as potetial misuses of the functionality.☆202Updated 5 years ago
- Windows Credentials Editor v1.3beta☆110Updated 5 years ago
- A PoC WMI backdoor presented at Black Hat 2015☆273Updated 9 years ago
- Toolset for research malware and Cobalt Strike beacons☆211Updated 3 months ago
- Lnk Explorer Command line edition!!☆310Updated 5 months ago
- Commandline low level file extractor for NTFS☆290Updated 5 years ago
- Example DLL to load from Windows NetShell☆180Updated 8 years ago
- Remote Command Executor: A OSS replacement for PsExec and RunAs - or Telnet without having to install a server. Take your pick :)☆351Updated 7 years ago
- Netview enumerates systems using WinAPI calls☆295Updated 3 years ago
- Parser for $LogFile on NTFS☆196Updated 3 weeks ago
- Slides and reference material from Evading Autoruns presentation at DerbyCon 7 (September 2017)☆104Updated 4 years ago
- PowerShell module for Mimikatz☆212Updated 5 years ago
- Comae Hibernation File Decompressor☆150Updated 2 years ago
- ☆260Updated 2 years ago
- This is a PowerShell Empire launcher PoC using PrintDemon and Faxhell.☆202Updated 4 years ago