nccgroup / memgrepLinks
Memory searching utilities
☆43Updated 12 years ago
Alternatives and similar repositories for memgrep
Users that are interested in memgrep are comparing it to the libraries listed below
Sorting:
- A simple reflective dll example☆19Updated 9 years ago
- Environmental (and http) keying for scripting languages☆39Updated 7 years ago
- A Generic Windows Memory Scraping Tool☆71Updated 8 years ago
- windows-operating-system-archaeology @Enigma0x3 @subTee☆47Updated 8 years ago
- Make Windows LNK file with python (pylnk)☆66Updated 9 years ago
- Fileless SQL Server CLR-based Custom Stored Procedure Command Execution☆35Updated 8 years ago
- Python based module to find common vulnerabilities which lead to Windows privilege escalation☆30Updated 9 years ago
- This script is used for extracting DDE in docx and xlsx☆12Updated 8 years ago
- A sample bot for Cobalt Strike 3☆22Updated 9 years ago
- SilkETW & SilkService☆40Updated 6 years ago
- Loads the AutoIt DLL and PowerShell assemblies into memory and executes the specified keystrokes☆62Updated 8 years ago
- This is a Python port of lnk-parse-1.0, a tool to parse Windows .lnk files.☆80Updated 2 years ago
- Kerberom is a tool aimed to retrieve ARC4-HMAC'ed encrypted Tickets Granting Service (TGS) of accounts having a Service Principal Name (S…☆36Updated 7 years ago
- Mixing up CVE and MS like a pro☆25Updated 8 years ago
- Powershell Persistence Locator☆66Updated 9 years ago
- Crack your macros like the math pros.☆33Updated 8 years ago
- ☆65Updated 9 years ago
- ☆50Updated 8 years ago
- Talk given at DerbyCon and RuxCon 2016☆23Updated 9 years ago
- ☆17Updated 10 years ago
- PowerShell Empire module for logging USB keystrokes via ETW☆32Updated 9 years ago
- ☆58Updated 8 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆88Updated 8 years ago
- Various snippets created during malware analysis☆22Updated 7 years ago
- Simple DDE object detector☆56Updated 8 years ago
- Powershell script which will take any payload and put it in the a bat script which delivers the payload. The payload is delivered using e…☆56Updated last year
- Advanced Portable Executable File Analyzer And Disassembler 32 & 64 Bit☆100Updated 6 years ago
- Decrypt NTDS hashes☆23Updated 12 years ago
- Cobalt Strike Field Manual - A quick reference for Windows commands that can be accessed in a beacon console.☆65Updated 8 years ago
- When CactusTorch meets WebDavDelivery and obfuscation☆63Updated 8 years ago