herrcore / LocalShellExtParseLinks
Script to parse first load time for Shell Extensions loaded by user. Also enumerates all loaded Shell Extensions that are only installed for the Current User.
☆21Updated 10 years ago
Alternatives and similar repositories for LocalShellExtParse
Users that are interested in LocalShellExtParse are comparing it to the libraries listed below
Sorting:
- A short and small memory forensics helper.☆52Updated 8 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆56Updated 8 years ago
- POC for IAT Parsing Payloads☆48Updated 8 years ago
- A ready to deploy docker container for a fresh sandbox for on-the-fly malware analysis☆42Updated 8 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆40Updated 6 years ago
- Remote timing attack exploit against most Zeus/Zbot variants including Citadel, Ice9, Zeus 2.3, KINS/ZeusVM etc..☆24Updated 10 years ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- a collection of yara rules for binary analysis☆24Updated 8 years ago
- Extract unencrypted SSH keys from pageant memory dump☆15Updated 10 years ago
- Various tools, exploits and other short code snippets☆12Updated 6 years ago
- Exploit Reliability Testing System☆35Updated 10 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆48Updated 8 years ago
- ☆16Updated 10 years ago
- Tool for dropping malware from EK☆40Updated 7 years ago
- ☆68Updated 8 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Updated 8 years ago
- ☆43Updated 7 years ago
- Post Exploitation Linux Toolkit☆33Updated 9 years ago
- Basic file metadata gathering script☆21Updated 6 months ago
- Scan web server for known webshell names and responses☆50Updated 9 years ago
- McAfee ePolicy 0wner exploit code☆46Updated 7 years ago
- ☆10Updated 9 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 8 years ago
- Collection of my Python Scripts☆41Updated 5 years ago
- PAC HTTPS leak demo from DEF CON 24 'Toxic Proxies' talk☆30Updated 9 years ago
- Exploit kit analyzer☆22Updated 10 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- ☆31Updated 9 years ago
- This script is used for extracting DDE in docx and xlsx☆12Updated 7 years ago
- Yet another Python library to read and write PE/PE+ files.☆78Updated 9 years ago