malware-unicorn / MFTparserLinks
Encase Script to parse harddrive for MFT data
☆16Updated 9 years ago
Alternatives and similar repositories for MFTparser
Users that are interested in MFTparser are comparing it to the libraries listed below
Sorting:
- Utility to decompress Linux swsusp hibernation file.☆29Updated 4 years ago
- An automated collection and analysis of malware from my honeypots.☆25Updated 7 years ago
- ☆16Updated 10 years ago
- A ready to deploy docker container for a fresh sandbox for on-the-fly malware analysis☆43Updated 8 years ago
- Parses Java Cache IDX files☆40Updated 7 years ago
- A python implementation of a grep friendly ftrace wrapper☆80Updated 6 years ago
- GUI Tool to generate threat intelligence information in various formats☆44Updated 7 years ago
- ☆68Updated 8 years ago
- A short and small memory forensics helper.☆53Updated 8 years ago
- CANAPE Network Testing Tool☆33Updated 7 years ago
- Material from our CANAPE workshop☆32Updated 7 years ago
- Discover potential timestamps within the Windows Registry☆19Updated 11 years ago
- Carve Windows Prefetch files from arbitrary binary data☆16Updated 8 years ago
- Script to parse first load time for Shell Extensions loaded by user. Also enumerates all loaded Shell Extensions that are only installed …☆21Updated 10 years ago
- This module is used to exploit startup script execution through Windows Group Policy settings when configured to run off of a remote SMB …☆22Updated 5 years ago
- Swiss Army knife for raw bytes manipulation & interception☆56Updated 2 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆57Updated 8 years ago
- ☆50Updated 9 years ago
- misc scripts☆36Updated 7 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 8 years ago
- Lite version of PDF X-RAY that uses no backend☆37Updated 14 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆25Updated 2 years ago
- Proof of concept VBA code to add to Normal.dot to put restrictions on Word☆41Updated 8 years ago
- Carves EXEs from given data files, using intelligent carving based upon PE headers☆39Updated 8 years ago
- Collection of my Python Scripts☆41Updated 5 years ago
- Volatility Framework plugin to detect various types of hooks as performed by banking Trojans☆40Updated 6 years ago
- Automated memory forensics analysis☆32Updated 6 years ago
- Static and automated/dynamic malware analysis☆47Updated 10 years ago
- POLAR☆74Updated 6 years ago
- Convert Windows Netmon Monitor Mode Wireless Packet Captures to Libpcap Format☆15Updated 6 years ago