abelcheung / rifiuti2
Windows Recycle Bin analyser
☆145Updated 8 months ago
Alternatives and similar repositories for rifiuti2:
Users that are interested in rifiuti2 are comparing it to the libraries listed below
- exe2powershell - exe2bat reborn for modern Windows☆171Updated 4 years ago
- Commandline low level file extractor for NTFS☆278Updated 5 years ago
- Active Directory forensic framework☆322Updated 2 years ago
- Remove individual lines from Windows XML Event Log (EVTX) files☆264Updated 3 years ago
- ☆350Updated 2 years ago
- Powershell script for enumerating vulnerable DCOM Applications☆255Updated 6 years ago
- Parse evtx files and detect use of the DanderSpritz eventlogedit module☆148Updated 7 years ago
- Remote Command Executor: A OSS replacement for PsExec and RunAs - or Telnet without having to install a server. Take your pick :)☆343Updated 7 years ago
- Windows Credentials Editor v1.3beta☆107Updated 5 years ago
- Cross-platform, open-source shellbag parser☆150Updated last year
- Dump various types of Windows credentials without injecting in any process.☆422Updated 2 years ago
- Allows you to quickly query a Windows machine for RAM artifacts☆218Updated 4 years ago
- Ps-Tools, an advanced process monitoring toolkit for offensive operations☆334Updated 4 years ago
- Parser for $UsnJrnl on NTFS☆109Updated 2 years ago
- A JavaScript and VBScript Based Empire Launcher, which runs within their own embedded PowerShell Host.☆320Updated 7 years ago
- a tool to make it easy and fast to test various forms of injection☆172Updated 5 years ago
- MSBuildShell, a Powershell Host running within MSBuild.exe☆284Updated 5 years ago
- CVE-2020-0796 Pre-Auth POC☆85Updated 4 years ago
- Slides and reference material from Evading Autoruns presentation at DerbyCon 7 (September 2017)☆102Updated 3 years ago
- A Powershell client for dnscat2, an encrypted DNS command and control tool.☆399Updated last year
- OFFICE DDEAUTO Payload Generation script☆127Updated 4 years ago
- The oledump-contrib repository contains plugins and enhancements for the oledump tool published by Didier Stevens.☆52Updated 8 years ago
- Windows RID Hijacking persistence technique☆169Updated 2 months ago
- PrintDemon is a PoC for a series of issues in the Windows Print Spooler service, as well as potetial misuses of the functionality.☆199Updated 4 years ago
- This project is just a dumping ground for random scripts I've developed.☆137Updated 5 months ago
- Windows Shortcut file (LNK) parser☆135Updated 2 years ago
- ☆164Updated 9 years ago
- Automated Tactics Techniques & Procedures☆252Updated last year
- Log newly created WMI consumers and processes to the Windows Application event log☆124Updated 6 years ago
- Windows 10 LPE (UAC Bypass) in Windows Store (WSReset.exe)☆264Updated 5 years ago