sumeshi / ntfsdumpLinks
An efficient tool for extracting files, directories, and alternate data streams directly from NTFS image files.
☆22Updated last year
Alternatives and similar repositories for ntfsdump
Users that are interested in ntfsdump are comparing it to the libraries listed below
Sorting:
- An efficient tool for search files, directories, and alternate data streams directly from NTFS image files.☆28Updated last year
- Windows Event Log Knowledge Base☆29Updated 3 weeks ago
- A library for fast parse & import of Windows Master File Table($MFT) into Elasticsearch.☆12Updated 6 months ago
- ☆25Updated 2 years ago
- ☆61Updated last year
- ☆23Updated last year
- xlrd2 is a variant of xlrd that is actively maintained☆23Updated last year
- ☆14Updated 6 years ago
- volatility explorer☆92Updated 5 years ago
- NTFS samples☆27Updated 5 years ago
- YARA Language Server☆75Updated 2 months ago
- Library to process OLE compound file format. This is a work in progress and was initially written for jumplist parsing (for which it does…☆19Updated 11 months ago
- Collection of tips, tools, arsenal and techniques I've learned during RE and other CyberSecStuff☆57Updated 4 months ago
- ☆30Updated 4 months ago
- ☆39Updated last year
- Tools for macOS Forensic Bootable media☆14Updated 5 years ago
- Invoke-DetectItEasy is a wrapper for excelent tool called Detect-It-Easy. This PS module is very useful for Threat Hunting and Forensics.☆30Updated 3 years ago
- Manage Your Large Team of Consultants☆11Updated 4 months ago
- Help deobfuscate VBScript☆18Updated 3 years ago
- CLI tool to compute the TypeRefHash for .NET binaries.☆19Updated 4 years ago
- Library and tools to access the Windows Prefetch File (SCCA) format.☆83Updated last month
- Imphash-like calculation on Golang binaries☆49Updated 3 years ago
- Rekall Memory Forensic Framework☆33Updated 6 years ago
- This tool is the result of a reverse engineering process of the Windows service called SysMain. Time to interact with the prefetch files …☆32Updated 5 years ago
- Extract files from NTFS Volume☆33Updated 4 years ago
- ☆23Updated 4 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆19Updated last year
- Wrapper for TSK (Sleuth Kit) Bindings☆12Updated 3 years ago
- QuasarRAT analysis tools and research report☆28Updated 2 years ago
- Generates YARA rules to detect malware using API hashing☆17Updated 4 years ago