A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed
☆16Jun 20, 2016Updated 9 years ago
Alternatives and similar repositories for PS_logging_reg
Users that are interested in PS_logging_reg are comparing it to the libraries listed below
Sorting:
- dnssinkholelist is a python package focused on combining open source lists of malicious domains, dynamic dns domains, and advertisement d…☆18Apr 13, 2016Updated 9 years ago
- Generate bulk YARA rules from YAML input☆22Feb 3, 2020Updated 6 years ago
- ☆16Jun 1, 2018Updated 7 years ago
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆21Sep 30, 2022Updated 3 years ago
- Parser for Windows PowerShell script block logs☆100Aug 4, 2024Updated last year
- Extracts indicators of compromise (IOCs), including domain names, IPv4 addresses, email addresses, and hashes, from text.☆11Dec 10, 2017Updated 8 years ago
- ☆11Aug 11, 2014Updated 11 years ago
- Python-based cloud node for local use☆11Mar 7, 2018Updated 8 years ago
- note without the e(vernote), the quickest dirtiest cli evernote client ever☆10Apr 30, 2016Updated 9 years ago
- Sabonis, a Digital Forensics and Incident Response pivoting tool☆19Mar 3, 2022Updated 4 years ago
- A fork of David B Heise's VirusTotal Powershell Module☆17Mar 14, 2022Updated 3 years ago
- random RE stuff☆21May 11, 2012Updated 13 years ago
- Linux privilege escalation auditing tool☆17Aug 28, 2023Updated 2 years ago
- Monitor JSON notifications feed from VT☆17Jun 13, 2017Updated 8 years ago
- A python script that can be used to scan data within in an IDB using Yara.☆23Sep 4, 2018Updated 7 years ago
- ☆17Nov 12, 2017Updated 8 years ago
- Shared yara rules☆30Mar 17, 2014Updated 11 years ago
- PowerShell Runspace Connect-Back Shell☆26Dec 31, 2015Updated 10 years ago
- Provides a simple Python based proxy for running DNS over HTTPS to Google's DNS over HTTPS service.☆39Mar 10, 2025Updated 11 months ago
- Cli interface to threatcrowd.org☆20Jul 6, 2017Updated 8 years ago
- A C# tool to send emails through Outlook from the command line or in memory☆32Jun 17, 2020Updated 5 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆88Oct 6, 2017Updated 8 years ago
- Credential Phish Analysis and Automation☆99Aug 22, 2018Updated 7 years ago
- Binary commandline executable to parse ETL files☆69Jun 7, 2018Updated 7 years ago
- The opposite of Ruler, provides blue teams with the ability to detect Ruler usage against Exchange.☆96Oct 11, 2017Updated 8 years ago
- Open Source Office Malware Generation & Polymorphic Engine for Red Teams and QA testing☆95Apr 5, 2017Updated 8 years ago
- PowerShell module to interact with Windows Presentation Foundation (or WPF) controls.☆30Apr 10, 2024Updated last year
- An Ubuntu 16.04 build containing Suricata, PulledPork, Bro, and Splunk☆23Jul 10, 2018Updated 7 years ago
- PowerKrabsEtw is a PowerShell interface for doing real-time ETW tracing.☆103Nov 17, 2020Updated 5 years ago
- Making shellcode UD - https://osandamalith.com☆25Jul 31, 2016Updated 9 years ago
- REIL translation library☆36May 6, 2016Updated 9 years ago
- Various Modules & Scripts for use with Viper Framework☆27Aug 20, 2019Updated 6 years ago
- Offensive Data Storage☆61Sep 1, 2016Updated 9 years ago
- Crack your macros like the math pros.☆33Feb 14, 2017Updated 9 years ago
- A set of compiled application restriction bypasses☆30Mar 15, 2017Updated 8 years ago
- Resolves DLL API entrypoints for a process w/ remote query capabilities.☆58Jun 23, 2017Updated 8 years ago
- POC Highlighting Obfuscation Techniques used by FIN threat actors based on cmd.exe's replace functionality and cmd.exe/powershell.exe's s…☆105Jul 2, 2017Updated 8 years ago
- Deobfuscate batch scripts obfuscated using string substitution and escape character techniques.☆165Oct 24, 2022Updated 3 years ago
- ☆27Mar 1, 2017Updated 9 years ago