malware-unicorn / MFTparser
Encase Script to parse harddrive for MFT data
☆16Updated 8 years ago
Alternatives and similar repositories for MFTparser:
Users that are interested in MFTparser are comparing it to the libraries listed below
- Sentinel is a command line tool able to protect Windows 32 bit programs against exploits targeted by attackers or viruses. It can protect…☆71Updated 11 years ago
- CANAPE Network Testing Tool☆33Updated 6 years ago
- Tool for automation of GUI-based testing.☆15Updated 10 years ago
- ☆16Updated 10 years ago
- Carve Windows Prefetch files from arbitrary binary data☆14Updated 7 years ago
- Parses Java Cache IDX files☆39Updated 7 years ago
- Material from our CANAPE workshop☆32Updated 6 years ago
- PowerShell Empire module for logging USB keystrokes via ETW☆31Updated 8 years ago
- This module is used to exploit startup script execution through Windows Group Policy settings when configured to run off of a remote SMB …☆22Updated 5 years ago
- POC for IAT Parsing Payloads☆47Updated 8 years ago
- SQL Injection without the pain of syringes.☆25Updated 7 years ago
- Proof of concept VBA code to add to Normal.dot to put restrictions on Word☆41Updated 8 years ago
- QEMU with rVMI extensions☆25Updated 7 years ago
- ☆17Updated 8 years ago
- PyCommand Scripts for Immunity Debugger☆36Updated 10 years ago
- McAfee ePolicy 0wner exploit code☆46Updated 6 years ago
- GUI Tool to generate threat intelligence information in various formats☆43Updated 7 years ago
- My metasploit modules☆22Updated 9 years ago
- A ready to deploy docker container for a fresh sandbox for on-the-fly malware analysis☆43Updated 7 years ago
- IDA Pro plugin that rename functions on load, based on functionality☆19Updated 7 years ago
- Fileless SQL Server CLR-based Custom Stored Procedure Command Execution☆35Updated 8 years ago
- This script is used for extracting DDE in docx and xlsx☆12Updated 7 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Updated 8 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆55Updated 7 years ago
- An automated collection and analysis of malware from my honeypots.☆25Updated 7 years ago
- Automated memory forensics analysis☆33Updated 5 years ago
- Create custom Windows batch files from a configuration file☆32Updated 8 years ago
- Talk given at DerbyCon and RuxCon 2016☆22Updated 8 years ago
- IRC bot for cracking hashes☆18Updated 4 years ago
- ☆21Updated 6 years ago