malware-unicorn / MFTparserLinks
Encase Script to parse harddrive for MFT data
☆16Updated 9 years ago
Alternatives and similar repositories for MFTparser
Users that are interested in MFTparser are comparing it to the libraries listed below
Sorting:
- A ready to deploy docker container for a fresh sandbox for on-the-fly malware analysis☆42Updated 8 years ago
- A short and small memory forensics helper.☆52Updated 7 years ago
- ☆17Updated 8 years ago
- Utility to decompress Linux swsusp hibernation file.☆28Updated 3 years ago
- Automated memory forensics analysis☆33Updated 5 years ago
- Miscellaneous analysis tools☆27Updated 10 years ago
- A Volatility plugin for finding sqlite database rows☆22Updated 6 years ago
- Parses Java Cache IDX files☆39Updated 7 years ago
- GUI Tool to generate threat intelligence information in various formats☆43Updated 7 years ago
- ☆16Updated 10 years ago
- Frontend for Codex Gigas☆21Updated 8 years ago
- KillerZee: Tools for Attacking and Evaluating Z-Wave Networks☆54Updated 6 years ago
- Script to parse first load time for Shell Extensions loaded by user. Also enumerates all loaded Shell Extensions that are only installed …☆21Updated 10 years ago
- Rekall is an endpoint security solution.☆39Updated 7 years ago
- Carve Windows Prefetch files from arbitrary binary data☆15Updated 8 years ago
- ☆68Updated 8 years ago
- Exploit Reliability Testing System☆34Updated 10 years ago
- A Rekall interactive document for a Memory Analysis workshop/course.☆43Updated 8 years ago
- This script is used for extracting DDE in docx and xlsx☆12Updated 7 years ago
- SQL Injection without the pain of syringes.☆25Updated 8 years ago
- Offline Digital Forensics Tool for Binary Files☆38Updated 7 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- Static and automated/dynamic malware analysis☆47Updated 9 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆23Updated last year
- Material from our CANAPE workshop☆32Updated 6 years ago
- Lite version of PDF X-RAY that uses no backend☆36Updated 13 years ago
- Swiss Army knife for raw bytes manipulation & interception☆56Updated 2 years ago
- A python implementation of a grep friendly ftrace wrapper☆80Updated 6 years ago
- Discover potential timestamps within the Windows Registry☆19Updated 11 years ago
- Sentinel is a command line tool able to protect Windows 32 bit programs against exploits targeted by attackers or viruses. It can protect…☆71Updated 11 years ago