abelcheung / rifiuti2Links
Windows Recycle Bin analyser
☆154Updated last month
Alternatives and similar repositories for rifiuti2
Users that are interested in rifiuti2 are comparing it to the libraries listed below
Sorting:
- Parser for $UsnJrnl on NTFS☆118Updated 3 years ago
- Various tools besides Msys2 that I've found useful to have available on windows. Create an issue if you have anything you want to add, wa…☆149Updated 11 months ago
- exe2powershell - exe2bat reborn for modern Windows☆175Updated 5 years ago
- Windows DPAPI laboratory☆94Updated 7 years ago
- Windows Shortcut file (LNK) parser☆136Updated 3 years ago
- ☆94Updated 3 months ago
- Allows you to quickly query a Windows machine for RAM artifacts☆219Updated 5 years ago
- Cross-platform, open-source shellbag parser☆160Updated 2 years ago
- UAC Bypass with mmc via alpc☆157Updated 6 years ago
- This is a Python port of lnk-parse-1.0, a tool to parse Windows .lnk files.☆80Updated 2 years ago
- Python implementation of LZNT1 compression/decompression☆70Updated 5 years ago
- Windows privilege escalation through NTLM Relay and NBNS Spoofing☆52Updated 9 years ago
- Remove individual lines from Windows XML Event Log (EVTX) files☆271Updated 4 years ago
- SpecuCheck is a Windows utility for checking the state of the software mitigations and hardware against CVE-2017-5754 (Meltdown), CVE-20…☆583Updated 6 years ago
- Tool to extract the $UsnJrnl from an NTFS volume☆109Updated 6 years ago
- DLL Password Filter Implant with Exfiltration Capabilities☆138Updated 5 years ago
- Slides and reference material from Evading Autoruns presentation at DerbyCon 7 (September 2017)☆106Updated 4 years ago
- Commandline low level file extractor for NTFS☆306Updated 6 years ago
- documentation, scripts, tools related to Zena Forensics (http://blog.digital-forensics.it)☆100Updated 8 years ago
- Win32 utility for auditing TCP connections☆56Updated 5 years ago
- Web-based check for Windows privesc vulnerabilities☆140Updated 2 years ago
- Parse evtx files and detect use of the DanderSpritz eventlogedit module☆150Updated 8 years ago
- Volatility Plugins☆64Updated 2 years ago
- Toolset for research malware and Cobalt Strike beacons☆211Updated 9 months ago
- Remote Command Executor: A OSS replacement for PsExec and RunAs - or Telnet without having to install a server. Take your pick :)☆365Updated 8 years ago
- Windows RID Hijacking persistence technique☆177Updated last year
- ☆58Updated 4 years ago
- PrintDemon is a PoC for a series of issues in the Windows Print Spooler service, as well as potetial misuses of the functionality.☆199Updated 5 years ago
- Detects DLL hijacking in running processes on Windows systems☆155Updated 10 years ago
- volatility explorer☆92Updated 5 years ago