threadmap plugin for Volatility Foundation
☆27Aug 23, 2021Updated 4 years ago
Alternatives and similar repositories for threadmap
Users that are interested in threadmap are comparing it to the libraries listed below
Sorting:
- A Volatility plugin for finding sqlite database rows☆21Jul 14, 2019Updated 6 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆40Dec 14, 2018Updated 7 years ago
- Volatility plugins created by the author☆44Oct 2, 2015Updated 10 years ago
- Google Chrome internals analysis using Volatility☆42Nov 17, 2022Updated 3 years ago
- An advanced parser for INDX records☆29Aug 7, 2019Updated 6 years ago
- Telegram Bot that performs checks of the yararules.com ruleset☆13May 13, 2016Updated 9 years ago
- How can you track the hunting techniques you come up with?☆13Sep 3, 2017Updated 8 years ago
- Various scrips☆12Oct 19, 2022Updated 3 years ago
- RunPE dump - I wrote this to have better control over the analysis of malwares. I can stop and analysis malware when it uses some of the …☆10Jul 1, 2015Updated 10 years ago
- Compile time string XOR for visual studio 2010-2013☆10May 31, 2018Updated 7 years ago
- ☆10Nov 14, 2019Updated 6 years ago
- ☆16Apr 16, 2017Updated 8 years ago
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆208Mar 12, 2025Updated 11 months ago
- Page File analysis tools.☆131Dec 3, 2015Updated 10 years ago
- Git for me to put all my forensics stuff☆23Sep 2, 2025Updated 5 months ago
- PoC ActiveX SVG Document Execution☆21Nov 8, 2018Updated 7 years ago
- ☆15Apr 9, 2018Updated 7 years ago
- Easily create index of your SANS books☆18Oct 28, 2022Updated 3 years ago
- ☆19Oct 27, 2018Updated 7 years ago
- Hollowfind is a Volatility plugin to detect different types of process hollowing techniques used in the wild to bypass, confuse, deflect …☆142Sep 29, 2022Updated 3 years ago
- Python IOC Editor☆65Mar 10, 2015Updated 10 years ago
- Plugins for the Volatility framework☆18Oct 30, 2015Updated 10 years ago
- EditBox is a plugin for the Volatility Framework. It extracts the text from Windows Edit controls, that is, textboxes as generated by Win…☆24Jun 4, 2017Updated 8 years ago
- ☆309Aug 14, 2020Updated 5 years ago
- Python script to automatically create sigma rules from The hive observables☆25Mar 17, 2019Updated 6 years ago
- Tool to parse SRU database☆25Mar 1, 2018Updated 7 years ago
- Github Desktop RCE PoC☆28Dec 4, 2018Updated 7 years ago
- Pure Python parser for Application Compatibility Shim Databases (.sdb files)☆110Jan 26, 2021Updated 5 years ago
- Crack your macros like the math pros.☆33Feb 14, 2017Updated 9 years ago
- repo for ctf☆22Apr 15, 2018Updated 7 years ago
- Vba2Graph - Generate call graphs from VBA code, for easier analysis of malicious documents.☆279Dec 13, 2021Updated 4 years ago
- Carve NTFS USN records from binary data☆27May 21, 2017Updated 8 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Jun 8, 2017Updated 8 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Jun 11, 2017Updated 8 years ago
- ☆280Apr 6, 2023Updated 2 years ago
- A collection of useful radare2 scripts!☆32Feb 2, 2018Updated 8 years ago
- Parses the WMI object database....looking for persistence☆34Dec 12, 2019Updated 6 years ago
- GigaDrop allows you to easily and securely share files directly between devices without uploading them to any server first☆11Sep 4, 2022Updated 3 years ago
- Volatility plugins developed and maintained by the community☆376Apr 5, 2021Updated 4 years ago