kacos2000 / WinHex_Templates
X-Ways Forensic/ WinHex templates
☆46Updated 3 years ago
Alternatives and similar repositories for WinHex_Templates:
Users that are interested in WinHex_Templates are comparing it to the libraries listed below
- Library and tools to access the Windows Prefetch File (SCCA) format.☆72Updated last month
- ☆56Updated 4 months ago
- Library and tools to access the Windows NT Registry File (REGF) format☆115Updated 6 months ago
- ☆19Updated 3 weeks ago
- Windows.EDB Browser☆54Updated last year
- Parse Microsoft shim databases☆29Updated last month
- Parser for $UsnJrnl on NTFS☆109Updated 2 years ago
- MFT parser☆65Updated 2 weeks ago
- A repo that contains a recursive dump from the ROOT key of every Windows Registry hive (using KAPE) from a vanilla (clean) install of eve…☆45Updated last year
- Windows Registry Knowledge Base☆171Updated 4 months ago
- Mount VSCs with ease!☆15Updated last month
- AppCompatCache (shimcache) parser. Supports Windows 7 (x86 and x64), Windows 8.x, and Windows 10☆114Updated last month
- Parser for $LogFile on NTFS☆191Updated last year
- Temporary storage for exe2aut☆32Updated 5 years ago
- ☆63Updated last month
- Extension blocks as found in ShellBags and other places in the Registry☆24Updated last month
- An efficient tool for search files, directories, and alternate data streams directly from NTFS image files.☆26Updated last year
- Rekall Memory Forensic Framework☆31Updated 5 years ago
- Collection of tips, tools, arsenal and techniques I've learned during RE and other CyberSecStuff☆54Updated 3 weeks ago
- $MFT directory tree reconstruction & FILE record info☆298Updated 4 months ago
- A plugin for x64dbg.☆24Updated 3 years ago
- Trace events in real time sessions☆44Updated last year
- NTFS samples☆25Updated 4 years ago
- Library to process OLE compound file format. This is a work in progress and was initially written for jumplist parsing (for which it does…☆18Updated 2 weeks ago
- ☆33Updated last year
- Mitigating DLL preloading attacks.☆62Updated 4 years ago
- Telegram cache4.db parser☆64Updated 4 years ago
- Provide an easy way to use C Run-time Library from Windows Kernel exported from ntdll.dll in your user-mode applications☆57Updated 6 months ago
- A collection of free miscellaneous Windows tools☆130Updated 6 months ago
- BITS Transfers Manager☆40Updated 2 years ago