luisgf / winddLinks
A Windows disk dumper
☆21Updated 9 years ago
Alternatives and similar repositories for windd
Users that are interested in windd are comparing it to the libraries listed below
Sorting:
- Example/starter code for custom Windows application compatibility shims☆33Updated 4 years ago
- Ghidra consonance and make it more ida-ish☆16Updated 6 years ago
- The hidden mstsc recorder player☆28Updated 5 years ago
- Dump Windows registry hives as text.☆16Updated 6 years ago
- EFI bios rom dumping tools☆20Updated 11 years ago
- Library and tools to access the Windows Hibernation File (hiberfil.sys) format☆13Updated 11 months ago
- an experimental tool for forensic analysis of ExFAT filesystem☆18Updated 9 years ago
- Forensics triage tool relying on Volatility and Foremost☆26Updated last year
- Automatic generator of YARA modules based in protocol buffers☆16Updated 4 months ago
- SMC Utility for Apple Macintosh Computers☆13Updated 10 years ago
- Ayaabu is a funny trick that fake the installation of many Antivirus☆12Updated 8 years ago
- radare2 script to help on COM objects reverse engineering☆11Updated 8 years ago
- Demonstrate the behavior of the tunnel cache on Windows☆10Updated 5 years ago
- Autopsy Module to analyze Registry Hives☆15Updated 3 years ago
- Tools for viewing and extracting HDD firmware files☆73Updated 10 years ago
- Detect AES and RSA keys in a memory dump.☆14Updated 8 years ago
- DeepToad is a library and a tool to clusterize similar files using fuzzy hashing☆20Updated 5 years ago
- extractor for QNX6 filesystem format.☆27Updated last year
- Recover event log entries from an image by heurisitically looking for record structures.☆27Updated 9 years ago
- ☆32Updated last year
- Parse Microsoft shim databases☆30Updated 5 months ago
- ☆20Updated 3 weeks ago
- Convert Windows Netmon Monitor Mode Wireless Packet Captures to Libpcap Format☆15Updated 5 years ago
- smtp-user-enum.pl ported into a recon-ng module.☆9Updated 11 years ago
- ☆56Updated 8 months ago
- Disables ASLR flag IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE in IMAGE_OPTIONAL_HEADER on pre-compiled EXE. Works for both 32 and 64 bit Windo…☆20Updated 4 years ago
- This repository contains Python 2.7 scripts for parsing MFS/MFSB partition and extracting contained files.☆32Updated 7 years ago
- Some tools for EFI hackery☆41Updated 13 years ago
- Library to process OLE compound file format. This is a work in progress and was initially written for jumplist parsing (for which it does…☆19Updated 4 months ago
- ☆18Updated 9 years ago