jeffbryner / NBDServerLinks
Network Block Device Server for windows with a DFIR/forensic focus.
☆98Updated 8 years ago
Alternatives and similar repositories for NBDServer
Users that are interested in NBDServer are comparing it to the libraries listed below
Sorting:
- An NTFS journal parser☆82Updated 9 years ago
- Library and tools to access the Volume Shadow Snapshot (VSS) format☆113Updated 11 months ago
- Digital Forensics Windows Registry (dfWinReg)☆52Updated 6 months ago
- This is a copy of the Registry Decoder repository from Google Code.☆28Updated 9 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 3 years ago
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆44Updated 8 years ago
- Checks with NSRL RDS servers looking for for hash matches☆114Updated 4 years ago
- AuditParser☆60Updated 11 years ago
- Reconstruct process trees from event logs☆146Updated 4 years ago
- Tool to parse SRU database☆24Updated 7 years ago
- Automated memory forensics analysis☆33Updated 5 years ago
- Queries to parse sysmon event log file with microsoft logparser☆56Updated 10 years ago
- raw2vmdk is an OS independent Java utility that allows you to mount raw disk images, like images created by "dd", using VMware, VirtualBo…☆105Updated 11 years ago
- Decode security descriptors in $Secure on NTFS☆20Updated 3 years ago
- Digital Forensics Virtual File System (dfVFS)☆209Updated 6 months ago
- Some dfir stuff☆31Updated 3 years ago
- openioc_scan Volatility Framework plugin☆43Updated 9 years ago
- A security tool for detecting suspicious PDF modifications commonly found in BEC☆41Updated 8 years ago
- Python unbup script for McAfee .bup files (with some additional fun features). This script is fully implemented in python it's not just a…☆37Updated 7 years ago
- A Windows Event Processing Utility☆46Updated 7 years ago
- SIFT Bootstrap Script☆145Updated 8 years ago
- Open source Python library for NTFS analysis☆81Updated 7 years ago
- Script for generating Bro intel files from pdf or html reports☆77Updated 9 years ago
- MantaRay Automated Computer Forensic Triage Tool☆64Updated 6 years ago
- Cuckoo Sandbox Local Maltego Transforms Project☆49Updated 11 years ago
- A powershell script for creating a Windows honeyport.☆89Updated 3 months ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆48Updated 11 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆44Updated 9 years ago
- Example programs used in the automating DFIR series☆63Updated 6 years ago
- PS / Bash / Python / Other scripts For FUN!☆55Updated 4 months ago