makitos666 / MFT_Fast_TranscoderLinks
MFT Fast Transcoder is a fast forensic tool to analyze MFT of NTFS partitions.
☆12Updated 2 years ago
Alternatives and similar repositories for MFT_Fast_Transcoder
Users that are interested in MFT_Fast_Transcoder are comparing it to the libraries listed below
Sorting:
- ☆58Updated last month
- Debugger checks in 3 ways☆19Updated 8 years ago
- Collection of structures, prototype and examples for Microsoft Macro Assembler (MASM) x64.☆17Updated 5 years ago
- BITS Transfers Manager☆45Updated 8 months ago
- Yara sort☆13Updated last week
- A small utility to run raw code chunks in the executable memory area.☆16Updated 10 years ago
- Demos and presentation from SECArmy Village Grayhat 2020☆37Updated 2 years ago
- A wrapper for capstone for bearparser☆16Updated 3 months ago
- A set of small utilities, helpers for PIN tracers☆35Updated 3 months ago
- Analysis tool for estimating the likelihood that a binary contains compressed or encrypted bytes☆46Updated last year
- SoftICE-like debugger for Windows 2000 and XP. Archived.☆19Updated 3 years ago
- Portable Executable launcher for Windows NT bypassing loader☆72Updated 4 months ago
- idenLib (Library Function Identification) plugin for x32dbg☆41Updated 6 years ago
- Python 3 - Manipulation and conversation with different data type (Bytes operations)☆27Updated 3 years ago
- Tracing and parsing an executing binary file☆29Updated 10 years ago
- ☆20Updated 6 years ago
- A small library helping to parse commandline parameters (for C/C++)☆58Updated 8 months ago
- x64dbg scripts for finding OEP of packers☆15Updated 7 years ago
- A cross-platform Python toolkit for parsing/writing PE files.☆66Updated last year
- Dump Windows registry hives as text.☆17Updated 6 years ago
- Sometimes, you need to manipulate low-level functionality (C APIs, etc) from high-level languages (Python). Eg. Force the low-level calls…☆15Updated last year
- Plugin for x64dbg to generate Yara rules from function basic blocks.☆37Updated 8 years ago
- ☆20Updated 7 months ago
- Demonstrate the behavior of the tunnel cache on Windows☆10Updated 6 years ago
- Library to process OLE compound file format. This is a work in progress and was initially written for jumplist parsing (for which it does…☆19Updated 11 months ago
- r0ak ("roak") is the Ring 0 Army Knife -- A Command Line Utility To Read/Write/Execute Ring Zero on for Windows 10 Systems☆28Updated 7 years ago
- Example/starter code for custom Windows application compatibility shims☆37Updated 5 years ago
- My malware analysis code snippets☆28Updated 2 years ago
- Taking advantage of CRT initialization, to get away with hooking protected applications☆48Updated 3 years ago
- Heappo 🦛 is a PyKD based extensions for WinDBG which aids Heap Exploitation☆14Updated 5 years ago