bridgeythegeek / editbox
EditBox is a plugin for the Volatility Framework. It extracts the text from Windows Edit controls, that is, textboxes as generated by Windows Common Controls.
☆24Updated 7 years ago
Alternatives and similar repositories for editbox:
Users that are interested in editbox are comparing it to the libraries listed below
- simple plugin to detect shellcode on Bro IDS with Unicorn☆33Updated 8 years ago
- Volatility Plugins☆21Updated 9 years ago
- Identify botnet panels with Ensembled Decision Trees☆18Updated 8 years ago
- Volatility plugin to extract X screenshots from a memory dump☆37Updated 6 years ago
- Honeybrid is a network application built to 1) administrate network of honeypots, and 2) transparently redirect live network sessions (TC…☆31Updated 6 years ago
- McAfee ePolicy 0wner exploit code☆46Updated 6 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆40Updated 6 years ago
- Torified Cuckoo malware analyser in a Docker container with VirtualBox☆2Updated 7 years ago
- swffile.py - SWF file parser module in Python☆28Updated 8 years ago
- ASERT shared scripts for reversing☆32Updated 7 years ago
- Mal Tindex is an Open Source tool for indexing binaries and help attributing malware campaigns☆67Updated 7 years ago
- An automated collection and analysis of malware from my honeypots.☆25Updated 7 years ago
- Tools☆13Updated last year
- ☆42Updated 6 years ago
- Parses Java Cache IDX files☆39Updated 7 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- Botnet monitoring is a crucial part in threat analysis and often neglected due to the lack of proper open source tools. Our tool will pro…☆81Updated 11 years ago
- Volatility Plugin to scan for shimmed processes in Windows☆10Updated 9 years ago
- Utilities for the memory forensics framework☆22Updated 6 years ago
- Yara intergrated into BurpSuite☆46Updated 8 years ago
- ☆14Updated 4 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 8 years ago
- ☆50Updated 8 years ago
- Volatility plugin to help identify DoublePulsar implant by listing the array of pointers SrvTransaction2DispatchTable from the srv.sys dr…☆16Updated 7 years ago
- a radare2 plugin that decodes packets with Scapy☆33Updated 7 years ago
- QEMU with rVMI extensions☆25Updated 7 years ago
- Development guide for Volatility Plugins☆23Updated 7 years ago
- A Rekall interactive document for a Memory Analysis workshop/course.☆43Updated 7 years ago
- ☆19Updated 6 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆49Updated 7 years ago