libyal / reviveitLinks
ReviveIT (revit) is a proof of concept file recovery tool (carver)
☆12Updated 5 years ago
Alternatives and similar repositories for reviveit
Users that are interested in reviveit are comparing it to the libraries listed below
Sorting:
- Discover potential timestamps within the Windows Registry☆19Updated 11 years ago
- ☆16Updated 11 years ago
- misc scripts☆35Updated 7 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆41Updated 3 years ago
- ☆19Updated 7 years ago
- Small scripts and POCs related to digital forensics☆18Updated 3 years ago
- Lite version of PDF X-RAY that uses no backend☆38Updated 14 years ago
- This is a python version of samesame repo to generate homograph strings☆24Updated 7 years ago
- onigiri - remote malware triage script☆24Updated 10 years ago
- Registry Miner☆14Updated 7 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 6 years ago
- Recover event log entries from an image by heurisitically looking for record structures.☆26Updated 10 years ago
- Yara filetype plugin for Vim.☆14Updated 4 years ago
- Library and tools to access the Microsoft Internet Explorer (MSIE) Cache File (index.dat) files☆16Updated last month
- Library and tools to access the Windows SuperFetch database format☆12Updated 2 months ago
- Work Fast With the pattern matching swiss knife for malware researchers.☆38Updated 9 years ago
- This is a framework written in EnScript to utilize the network capabilities of EnCase. The purpose is to allow for someone to build a qui…☆13Updated 10 years ago
- Library and tools to access the Windows Hibernation File (hiberfil.sys) format☆13Updated last month
- REST API based malware repository (abandoned)☆107Updated 10 years ago
- Python OpenIOC Editor☆18Updated 10 years ago
- Network Forensics Workshop Files☆17Updated 10 years ago
- Rekall Forensics and Incident Response Framework with rVMI extensions☆33Updated 4 years ago
- A tool to download malwares☆16Updated 2 years ago
- Various scrips☆12Updated 3 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 8 years ago
- Carve Windows Prefetch files from arbitrary binary data☆16Updated 8 years ago
- Vagrant configuration to setup a Thug honeyclient VM☆20Updated 10 years ago
- Server for receiving autorun data from the clients☆13Updated 8 years ago
- A tool to generate yara signatures from function blocks☆19Updated 11 years ago
- Yara syntax highlighting☆25Updated 4 years ago