makitos666 / MFT_Fast_TranscoderLinks
MFT Fast Transcoder is a fast forensic tool to analyze MFT of NTFS partitions.
☆11Updated 2 years ago
Alternatives and similar repositories for MFT_Fast_Transcoder
Users that are interested in MFT_Fast_Transcoder are comparing it to the libraries listed below
Sorting:
- Analysis tool for estimating the likelihood that a binary contains compressed or encrypted bytes☆46Updated last year
- Collection of tips, tools, arsenal and techniques I've learned during RE and other CyberSecStuff☆57Updated 3 months ago
- Dump Windows registry hives as text.☆17Updated 6 years ago
- Collection of structures, prototype and examples for Microsoft Macro Assembler (MASM) x64.☆17Updated 5 years ago
- Python module to extract Ascii, Utf8, and Unicode strings from binary data. Lightning fast wrapper around c++ compiled code.☆54Updated 6 months ago
- A set of small utilities, helpers for PIN tracers☆35Updated 2 months ago
- ☆58Updated 3 weeks ago
- Python 3 - Manipulation and conversation with different data type (Bytes operations)☆27Updated 3 years ago
- A small utility to run raw code chunks in the executable memory area.☆16Updated 10 years ago
- ☆37Updated 9 months ago
- Sources Codes of many MSIL malwares☆24Updated 3 years ago
- x64dbg scripts for finding OEP of packers☆15Updated 7 years ago
- Debugger checks in 3 ways☆19Updated 7 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Updated 3 years ago
- My malware analysis code snippets☆28Updated 2 years ago
- ☆19Updated 3 years ago
- A wrapper for capstone for bearparser☆16Updated 2 months ago
- A CMake template for projects using MS Detours☆24Updated 10 months ago
- A post-processing script for TinyTracer☆39Updated 2 years ago
- This repo contains miscellaneous tools to aid in your malware analysis.☆13Updated 4 years ago
- A cross-platform Python toolkit for parsing/writing PE files.☆66Updated last year
- Hiew External Module (HEM) to calculate CRC-32, MD5, SHA-1, and SHA-256 hashes of a given file/block☆44Updated last year
- Plugin for x64dbg to generate Yara rules from function basic blocks.☆37Updated 8 years ago
- Invoke-DetectItEasy is a wrapper for excelent tool called Detect-It-Easy. This PS module is very useful for Threat Hunting and Forensics.☆29Updated 3 years ago
- History and analysis of Windows desktop images☆20Updated 4 years ago
- BITS Transfers Manager☆44Updated 7 months ago
- An experimental dynamic malware unpacker based on Intel Pin and PE-sieve☆63Updated last year
- .NET deobfuscator and unpacker (with a control flow unflattener for DoubleZero added).☆29Updated 3 years ago
- Heappo 🦛 is a PyKD based extensions for WinDBG which aids Heap Exploitation☆14Updated 5 years ago
- Demonstrate the behavior of the tunnel cache on Windows☆10Updated 6 years ago