py4n6 / pyflagLinks
Python Forensic and Log Analysis GUI
☆27Updated 10 years ago
Alternatives and similar repositories for pyflag
Users that are interested in pyflag are comparing it to the libraries listed below
Sorting:
- CIRCL system forensic tools or a jumble of tools to support forensic☆41Updated 2 years ago
- MantaRay Automated Computer Forensic Triage Tool☆65Updated 6 years ago
- Different DFIR and CTI utilities☆37Updated 5 years ago
- Mass static malware analysis tool☆95Updated 3 years ago
- Automating forensic data extraction, reduction, and overall triage of cold disk and memory images.☆21Updated 6 years ago
- Zeek package to generate a SMB client fingerprint☆27Updated 5 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆25Updated 2 years ago
- Parses IE's Automatic Crash Recovery Files☆16Updated 8 years ago
- Community modules for FAME☆65Updated 2 months ago
- Synopsis is a tool to aid analysts reviewing browser history files by providing a high-level “synopsis” of key information.☆22Updated 7 years ago
- Various tools and scripts☆43Updated 3 years ago
- A DFVFS Backed Forensic Viewer☆41Updated 5 years ago
- Windows Thingies in Python for live use.☆24Updated 6 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆109Updated 7 years ago
- ForGe Forensic test image generator☆34Updated 10 years ago
- Emulates the Sysinternals Autoruns tool, but for DFIR purposes e.g. multi user processing☆55Updated 6 years ago
- Binaries for the log2timeline projects and dependencies☆40Updated 3 weeks ago
- A collection of typical false positive indicators☆55Updated 5 years ago
- This repository maintains the SaltStack state files for the REMnux distro.☆53Updated 2 weeks ago
- Yet another registry parser☆136Updated 3 years ago
- Simple Docker Honeypot server emulating small snippets of the Docker HTTP API☆32Updated 5 years ago
- Example programs used in the automating DFIR series☆63Updated 6 years ago
- Validates yara rules and tries to repair the broken ones.☆40Updated 5 years ago
- Evidence Fetcher (efetch) is a web-based file explorer, viewer, and analyzer.☆39Updated 5 years ago
- Page File analysis tools.☆129Updated 10 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Updated last year
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated 2 years ago
- A Windows Event Processing Utility☆47Updated 7 years ago
- Python script to batch query the Tor Relays and Bridges☆36Updated 6 years ago
- Python IOC Editor☆64Updated 10 years ago