libyal / libmsiecf
Library and tools to access the Microsoft Internet Explorer (MSIE) Cache File (index.dat) files
☆16Updated 7 months ago
Alternatives and similar repositories for libmsiecf:
Users that are interested in libmsiecf are comparing it to the libraries listed below
- Carve Windows Prefetch files from arbitrary binary data☆14Updated 7 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- This is a copy of the Registry Decoder Live repository from Google Code☆9Updated 9 years ago
- Scanner for Regin Virtual Filesystems☆26Updated 10 years ago
- Sample libraries to be used with IAT Patcher☆33Updated 2 years ago
- Analysis PE file or Shellcode☆49Updated 8 years ago
- Malware analyses and helpful scripts☆29Updated 2 years ago
- Library and tools to access the Windows SuperFetch database format☆12Updated 8 months ago
- Various libraries focused on examining/parsing NTFS-specific structures☆16Updated 9 years ago
- It's not just UsnJrnl (USN Journal Records/Change Journal Records) parser.☆23Updated 6 years ago
- Recover event log entries from an image by heurisitically looking for record structures.☆27Updated 9 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- Summit Route End Point Protection - Client code☆17Updated 8 years ago
- Library for binary signature scanning.☆27Updated 6 months ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 8 years ago
- Library and tools to access the Windows Hibernation File (hiberfil.sys) format☆13Updated 7 months ago
- A tool to generate yara signatures from function blocks☆19Updated 10 years ago
- Library for Windows XML Event Log (EVTX) data types☆17Updated 5 months ago
- ☆18Updated 11 years ago
- Malpimp is an advanced API tracing tool and designed to automate the reverse engineering process. In the backend it uses pydbg to hook t…☆8Updated 8 years ago
- ReviveIT (revit) is a proof of concept file recovery tool (carver)☆11Updated 4 years ago
- Malware.lu configuration extractor☆24Updated 10 years ago
- CAPE monitor DLLs☆39Updated 5 years ago
- ☆28Updated 7 years ago
- Extract GUIDs from .NET assemblies☆21Updated 8 years ago
- Tool for analysis of Windows Prefetch files☆26Updated 6 years ago
- PCAUSA Rawether for Windows Local Privilege Escalation☆38Updated 7 years ago
- officefileinfo is a python script to help analyse the newer Microsoft Office file formats. There are numerous tools for dealing with the …☆16Updated 8 years ago
- Exploit WinIo - Vidix and Run Shellcode in Windows Kerne ( local Privilege escalation )☆28Updated 9 years ago
- A Rekall interactive document for a Memory Analysis workshop/course.☆43Updated 7 years ago