libyal / libmsiecfLinks
Library and tools to access the Microsoft Internet Explorer (MSIE) Cache File (index.dat) files
☆16Updated last month
Alternatives and similar repositories for libmsiecf
Users that are interested in libmsiecf are comparing it to the libraries listed below
Sorting:
- Library and tools to access the Windows Hibernation File (hiberfil.sys) format☆13Updated last month
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- Library for Windows XML Event Log (EVTX) data types☆18Updated last month
- Library and tools to access the Windows SuperFetch database format☆12Updated 2 months ago
- Generate MAEC XML from Ero Carrera's pefile output☆15Updated 8 years ago
- Carves EXEs from given data files, using intelligent carving based upon PE headers☆38Updated 8 years ago
- a collection of yara rules for binary analysis☆24Updated 8 years ago
- Library for binary signature scanning.☆27Updated last month
- Network detector for Winnti malware☆21Updated 7 years ago
- Malware analyses and helpful scripts☆29Updated 3 years ago
- Summit Route End Point Protection - Server code☆11Updated 9 years ago
- Scanner for Regin Virtual Filesystems☆26Updated 11 years ago
- Library and tools to access the Windows Event Log (EVT) format☆60Updated last month
- Modified edition of cuckoomon☆51Updated 7 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆40Updated 7 years ago
- Recover event log entries from an image by heurisitically looking for record structures.☆26Updated 10 years ago
- Exploit kit analyzer☆22Updated 10 years ago
- QEMU with rVMI extensions☆25Updated 8 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆58Updated 8 years ago
- Random Code Store☆17Updated 2 years ago
- ☆10Updated 8 years ago
- A PowerShell binding for the Unicorn Engine☆17Updated 10 years ago
- Server for receiving autorun data from the clients☆13Updated 8 years ago
- Yara rules for quick reverse engineering of malware.☆19Updated 10 years ago
- Volatility memory forensics plugin for extracting Windows DNS Cache☆29Updated 8 years ago
- Scanning and identifying XOR encrypted PE files in PE resources☆30Updated 11 years ago
- An NTFS journal parser☆80Updated 9 years ago
- revised "peHash: A Novel Approach to Fast Malware Clustering"☆21Updated 9 years ago
- Tool to check if your computer is likely to be vulnerable to exploitable constant Read-Write-Execute (RWX) addresses (AVs vulnerability)☆52Updated 10 years ago
- Carve Windows Prefetch files from arbitrary binary data☆16Updated 8 years ago