adamkramer / reg_exportLinks
☆11Updated 8 years ago
Alternatives and similar repositories for reg_export
Users that are interested in reg_export are comparing it to the libraries listed below
Sorting:
- Script to parse first load time for Shell Extensions loaded by user. Also enumerates all loaded Shell Extensions that are only installed …☆21Updated 10 years ago
- Volatility memory forensics plugin for extracting Windows DNS Cache☆29Updated 8 years ago
- Plugins for the Viper Framework☆14Updated 5 years ago
- Recover event log entries from an image by heurisitically looking for record structures.☆27Updated 9 years ago
- A collection of Volatility Framework plugins.☆27Updated 11 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- A curated list of tools for incident response☆30Updated last year
- Discover potential timestamps within the Windows Registry☆19Updated 11 years ago
- Windows link file (shortcuts) examiner☆68Updated last year
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- Carve Windows Prefetch files from arbitrary binary data☆16Updated 8 years ago
- Registry Miner☆14Updated 7 years ago
- Python OpenIOC Editor☆18Updated 9 years ago
- An Incident Response tool that visualizes historic process execution evidence (based on Event ID 4688 - Process Creation Event) in a tree…☆60Updated 7 years ago
- Yara syntax highlighting☆25Updated 3 years ago
- Basic file metadata gathering script☆21Updated 3 months ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 7 years ago
- Windows registry samples☆24Updated 6 years ago
- Set of utilities for getting information about Windows Events☆15Updated 7 years ago
- Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research☆53Updated 7 years ago
- Tool for analysis of Windows Prefetch files☆26Updated 6 years ago
- Parses Java Cache IDX files☆39Updated 7 years ago
- ☆16Updated 10 years ago
- CLI tool to analyze PE files☆88Updated 10 months ago
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆45Updated 8 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆48Updated 8 years ago
- Carves EXEs from given data files, using intelligent carving based upon PE headers☆39Updated 8 years ago
- Library and tools to access the Windows SuperFetch database format☆12Updated last year