sunsetkookaburra / rust-libesedbLinks
Safe Rust API to libesedb
☆11Updated 5 months ago
Alternatives and similar repositories for rust-libesedb
Users that are interested in rust-libesedb are comparing it to the libraries listed below
Sorting:
- lnk_parser is a full rust implementation to parse windows LNK files☆22Updated 6 months ago
- Wrapper for TSK (Sleuth Kit) Bindings☆12Updated 3 years ago
- Extension blocks as found in ShellBags and other places in the Registry☆25Updated last year
- Windows Event Log Knowledge Base☆29Updated last month
- A document tagging library☆33Updated 10 months ago
- Manage Your Large Team of Consultants☆11Updated 4 months ago
- Keep it secret, keep it safe☆80Updated last year
- ☆16Updated 2 years ago
- An efficient tool for search files, directories, and alternate data streams directly from NTFS image files.☆28Updated last year
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆64Updated last year
- $MFT parser (from live systems or a copy of the $MFT) and raw file copy utility☆38Updated last year
- Parsers for common structures across windows formats.☆12Updated 2 years ago
- Indicators of Normality☆11Updated 3 years ago
- Automatic/Custom Destinations & LNK (MS-SHLLINK) Browser☆41Updated last year
- ☆62Updated last year
- Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and en…☆44Updated last year
- Command line utility for copying files on NTFS using low level disk access☆40Updated last year
- a tiny program to consume from ETW providers for research☆53Updated last year
- Lnk file parser☆90Updated 8 months ago
- Repo containing my public talks☆23Updated 2 years ago
- ☆76Updated this week
- YARA Language Server☆75Updated last week
- A proof-of-concept re-assembler for reverse VNC traffic.☆24Updated 2 years ago
- ☆21Updated 3 years ago
- Windows Thingies... but in Rust☆23Updated 3 years ago
- A repo that contains a recursive dump from the ROOT key of every Windows Registry hive (using KAPE) from a vanilla (clean) install of eve…☆54Updated 3 months ago
- Alternative YARA scanning engine☆73Updated 3 years ago
- Windows eventlog formatting, live fetching and querying utility in C☆20Updated 5 years ago
- A powershell parser for https://github.com/ufrisk/MemProcFS☆45Updated 4 years ago
- This is a repository for reporting any issues in any of my software☆13Updated 7 years ago