parses windows prefetch files, analyzing digital signatures, and also generics, with lots of features.
☆13May 12, 2025Updated last year
Alternatives and similar repositories for prefetch-parser
Users that are interested in prefetch-parser are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A tool of mine, using xxstrings from zaikoarg to get the executed files using strings of some processes, and checking digital signatures …☆12May 12, 2025Updated last year
- Gets the execution of files using the activitiescache.db artifact using sqlite3, checks the files' digital signatures, and applies severa…☆11May 12, 2025Updated last year
- pcasvc-executed is my fork of zack-src's service-execution, adding digital signature checking and generics made with yara rules☆12May 12, 2025Updated last year
- Parses NTFS journal entries☆15Jan 20, 2025Updated last year
- parses the BAM forensic artefact, showing digital signatures, last executed time, converted path according to harddiskvolume and generic …☆32Jun 3, 2025Updated last year
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Parses info about paths on a .txt it will ask to be provided, covering digital signatures, yara rules and replaces.☆19May 28, 2025Updated last year
- Parse the jar prefetch files, look at the DcoumLaunch strings, checker deleted/renamed pfs files and flags☆17Nov 7, 2025Updated 9 months ago
- blablabla☆21Jun 13, 2026Updated 2 months ago
- Accesses C:\$Extend\$UsnJrnl:$J, reads its creation timestamp, and compares it against the system boot time, if the $UsnJrnl creation tim…☆16Jan 14, 2026Updated 7 months ago
- Parses the $MFT and saves it to a csv file to be used with TLE☆17May 21, 2026Updated 3 months ago
- dumps DPS memory and filters into multiple output files☆17Mar 19, 2026Updated 5 months ago
- Detects fileless using powershell event logs and has an option to analyze RAM, to detect possible pe injects, shellcode, etc.☆21Apr 2, 2026Updated 5 months ago
- Parses the prefetch, verifies digital signatures on the main path and imports, uses YARA Rules, also analyzes service time and bypasses l…☆24Jul 31, 2026Updated last month
- Parses the BAM forensic artifact, converts \device\ paths to a drive letter, verifies digital signatures, checks replaces using UsnJrnl, …☆21May 28, 2026Updated 3 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Advanced Multi-Featured Telegram UserBot, Built in Python Using Telethon lib.☆40Mar 20, 2022Updated 4 years ago
- filter driver to hide files and directories☆28Feb 12, 2024Updated 2 years ago
- Abusing AsusBiosIoDrv64.sys to gain kernel and process physical/virtual memory access.☆30Mar 16, 2026Updated 5 months ago
- Rust CLI for x86-64 PE binary obfuscation with a custom lifter☆33Apr 10, 2026Updated 4 months ago
- A lightweight, high-performance user-mode C++ tool for automatically scanning and dumping FiveM memory offsets. Features smart pattern ma…☆43Jan 14, 2026Updated 7 months ago
- JNI made safer and easier with no performance impact☆69Feb 28, 2026Updated 6 months ago
- out-of-tree LLVM 21+ pass plugin for policy-driven IR obfuscation.☆103Aug 22, 2026Updated last week
- Removes Nvidia ShadowPlay interruptions☆93Sep 6, 2025Updated 11 months ago
- Use RTCore64 to map your driver on windows 11.☆175May 9, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Collection of custom ImGui menus DirectX9, DirectX11 menus from: evrope , king gizzard , Misterio , Past Owl , skvizxcc. Enjoy lmao☆153Jul 25, 2025Updated last year
- ☆586Jul 29, 2026Updated last month
- PowerForensics provides an all in one platform for live disk forensic analysis☆1,444Nov 16, 2023Updated 2 years ago
- Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.☆2,197Jul 28, 2026Updated last month
- Advanced Multi-Featured Telegram UserBot, Built in Python Using Telethon lib.☆2,975Jul 23, 2026Updated last month
- Portable Executable reversing tool with a friendly GUI☆3,793Jun 10, 2026Updated 2 months ago
- Dear ImGui: Bloat-free Graphical User interface for C++ with minimal dependencies☆76,060Updated this week