janstarke / regview
Offline-viewer for registry files
☆11Updated 3 weeks ago
Alternatives and similar repositories for regview:
Users that are interested in regview are comparing it to the libraries listed below
- Parser for Sdba memory pool tags☆18Updated 3 years ago
- A collection of tools adversaries commonly use in an attack.☆14Updated 5 months ago
- Parser for Windows PowerShell script block logs☆13Updated 4 months ago
- Hash collisions and their exploitations☆9Updated 2 years ago
- Speaking materials from conferences I've given☆9Updated 2 years ago
- F-Secure Lightweight Acqusition for Incident Response (FLAIR)☆16Updated 3 years ago
- D-Scan project for office document analysis and generating flow diagram of macro in documents. For demo visit☆29Updated 5 months ago
- ☆12Updated 3 years ago
- Kibana app for RedELK☆17Updated 2 years ago
- Python web app for previewing data in a Chrome Profile Folder☆20Updated 10 months ago
- Carving tool based in Radare2 & Yara☆16Updated 6 years ago
- Forensics triage tool relying on Volatility and Foremost☆26Updated last year
- ☆22Updated 6 months ago
- NTFS file system specimens☆13Updated last year
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆16Updated last year
- Defeating Anti-Debugging Techniques for Malware Analysis☆13Updated 2 years ago
- ☆17Updated 8 months ago
- USB HID driver emulation with PID/VID (0x3bca/0x27bb) of Plenom A/S Busylight Alpha, that is supported by Mimikatz. When mimikatz is exec…☆20Updated 2 years ago
- ☆10Updated last year
- Yara rules☆21Updated 2 years ago
- ☆15Updated 3 years ago
- Hundred Days of Yara Challenge☆12Updated 2 years ago
- ETW-Almulahaza is a consumer python-based tool that help you monitor ETW events of the operating system☆13Updated 2 years ago
- Indicators of Normality☆12Updated 2 years ago
- Attempt to replicate the functions of auto_rip by Corey Harrell in Python.☆13Updated 9 months ago
- This is a repository for the public blog with Labs indicators of compromise.☆10Updated 5 years ago
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 4 years ago
- Autopsy Module to analyze Registry Hives☆15Updated 3 years ago
- ☆20Updated last month
- ☆9Updated 5 years ago