makitos666 / MFT_Fast_TranscoderLinks
MFT Fast Transcoder is a fast forensic tool to analyze MFT of NTFS partitions.
☆11Updated 2 years ago
Alternatives and similar repositories for MFT_Fast_Transcoder
Users that are interested in MFT_Fast_Transcoder are comparing it to the libraries listed below
Sorting:
- Analysis tool for estimating the likelihood that a binary contains compressed or encrypted bytes☆47Updated 8 months ago
- A cross-platform Python toolkit for parsing/writing PE files.☆67Updated last year
- Collection of tips, tools, arsenal and techniques I've learned during RE and other CyberSecStuff☆55Updated 2 weeks ago
- Collection of structures, prototype and examples for Microsoft Macro Assembler (MASM) x64.☆16Updated 4 years ago
- ☆53Updated 2 months ago
- A set of small utilities, helpers for PIN tracers☆32Updated last year
- Malkom is an extensible and simple similarity graph generator for malware analysis aimed at helping analysts visualize and cluster sets o…☆16Updated 2 years ago
- A small utility to run raw code chunks in the executable memory area.☆14Updated 10 years ago
- Utilities for working with vivisect☆25Updated 5 months ago
- Debugger checks in 3 ways☆19Updated 7 years ago
- My malware analysis code snippets☆28Updated 2 years ago
- Python 3 - Manipulation and conversation with different data type (Bytes operations)☆26Updated 3 years ago
- Autopsy Module to analyze Registry Hives☆15Updated 3 years ago
- C++ Privilege Escalation Class to execute Process As Admin from User and Process as NT AUTHORITY SYSTEM from Admin☆22Updated last year
- This repo contains miscellaneous tools to aid in your malware analysis.☆12Updated 4 years ago
- Python module to extract Ascii, Utf8, and Unicode strings from binary data. Lightning fast wrapper around c++ compiled code.☆53Updated last month
- Defeating Anti-Debugging Techniques for Malware Analysis☆13Updated 2 years ago
- Dump Windows registry hives as text.☆16Updated 6 years ago
- A DLL that serves OutputDebugString content over a TCP connection☆35Updated 3 years ago
- A CMake template for projects using MS Detours☆23Updated 5 months ago
- ☆11Updated 2 years ago
- Parser for a custom executable formats from Hidden Bee and Rhadamanthys malware☆54Updated this week
- A post-processing script for TinyTracer☆37Updated 2 years ago
- CLI tool to compute the TypeRefHash for .NET binaries.☆19Updated 3 years ago
- Malware development: persistence - part 1: startup folder registry keys. C++ implementation☆12Updated 3 years ago
- Example/starter code for custom Windows application compatibility shims☆35Updated 4 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆31Updated 4 years ago
- NTFS samples☆25Updated 5 years ago
- Yara sort☆13Updated this week
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago