philhagen / vmware-snapcompare
VMware Snapshot Forensic Comparison Scripts
☆25Updated 12 years ago
Alternatives and similar repositories for vmware-snapcompare:
Users that are interested in vmware-snapcompare are comparing it to the libraries listed below
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆23Updated last year
- Queries to parse sysmon event log file with microsoft logparser☆56Updated 10 years ago
- Fast incident overview☆39Updated 8 years ago
- Performs OCR on image files and scans them for matches to YARA rules☆41Updated 6 years ago
- Comprehensive Pivoting Framework☆20Updated 8 years ago
- Yara intergrated into BurpSuite☆46Updated 8 years ago
- A Windows Event Processing Utility☆46Updated 7 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 6 years ago
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆44Updated 8 years ago
- Tool to parse SRU database☆24Updated 7 years ago
- NCC Group Ransomware Simulator☆69Updated 8 years ago
- ☆32Updated 4 months ago
- PowerShell scripts for Hard Drive forensics and parsing Windows Artifacts☆56Updated 4 years ago
- MantaRay Automated Computer Forensic Triage Tool☆63Updated 6 years ago
- Threat Intel and Incident Reponse☆10Updated 6 years ago
- A tool to catch spoofed NBNS responses.☆50Updated 6 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆85Updated 7 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- Evidence Fetcher (efetch) is a web-based file explorer, viewer, and analyzer.☆38Updated 5 years ago
- An offensive Powershell console☆30Updated 9 years ago
- This tool will extract useful information from the McAfee update SiteList file and decrypt the associated password for each entry.☆26Updated 7 years ago
- A Windows REG file to enable all default PowerShell logging on a system with PowerShell v5 installed☆16Updated 8 years ago
- Incident Response Scripts☆30Updated 5 years ago
- The AwesomerShell Code Sample☆50Updated 9 years ago
- Sysmon configuration file template with default high-quality event tracing☆17Updated 3 years ago
- An informational repo about hunting for adversaries in your IT environment.☆14Updated 8 years ago
- Modular tool to test exfiltration techniques.☆37Updated 7 years ago
- Registry Miner☆14Updated 7 years ago
- ☆52Updated 6 years ago
- Tools for parsing Forensic images☆41Updated 6 years ago