libyal / libmsiecf
Library and tools to access the Microsoft Internet Explorer (MSIE) Cache File (index.dat) files
☆16Updated 8 months ago
Alternatives and similar repositories for libmsiecf:
Users that are interested in libmsiecf are comparing it to the libraries listed below
- This is a copy of the Registry Decoder Live repository from Google Code☆9Updated 9 years ago
- It's not just UsnJrnl (USN Journal Records/Change Journal Records) parser.☆23Updated 6 years ago
- Malware analyses and helpful scripts☆29Updated 2 years ago
- Decode security descriptors in $Secure on NTFS☆20Updated 3 years ago
- Library for Windows XML Event Log (EVTX) data types☆18Updated 6 months ago
- Carve Windows Prefetch files from arbitrary binary data☆14Updated 7 years ago
- Recover event log entries from an image by heurisitically looking for record structures.☆27Updated 9 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- Library and tools to access the Windows SuperFetch database format☆12Updated 9 months ago
- ☆16Updated 2 years ago
- OpenHIPS prevents exploitation of Windows systems☆33Updated 12 years ago
- Malware.lu configuration extractor☆24Updated 11 years ago
- Random Code Store☆17Updated 2 years ago
- Exploit kit analyzer☆21Updated 10 years ago
- Various libraries focused on examining/parsing NTFS-specific structures☆16Updated 9 years ago
- A tool to generate yara signatures from function blocks☆19Updated 10 years ago
- Scanner for Regin Virtual Filesystems☆26Updated 10 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- Library for binary signature scanning.☆28Updated 7 months ago
- Library and tools to access the Windows Hibernation File (hiberfil.sys) format☆13Updated 8 months ago
- Carves EXEs from given data files, using intelligent carving based upon PE headers☆38Updated 7 years ago
- Sample libraries to be used with IAT Patcher☆33Updated 2 years ago
- Tool for analysts to perform simultaneous lookups (IP, Domain, URL, MD5) against multiple data sources☆29Updated 8 years ago
- Extract GUIDs from .NET assemblies☆21Updated 8 years ago
- onigiri - remote malware triage script☆24Updated 9 years ago
- A collection of Volatility Framework plugins.☆26Updated 11 years ago
- ☆16Updated 10 years ago
- Generate MAEC XML from Ero Carrera's pefile output☆15Updated 8 years ago
- Framework complet d'analyse de malware☆12Updated 9 years ago
- Command-line Interface for Binar.ly☆37Updated 8 years ago