yampelo / samparser
A python script used to parse the SAM registry hive.
☆72Updated 7 years ago
Alternatives and similar repositories for samparser:
Users that are interested in samparser are comparing it to the libraries listed below
- Malware Repository Framework☆100Updated 7 years ago
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆44Updated 8 years ago
- BTG's purpose is to make fast and efficient search on IOC☆70Updated 6 years ago
- Scripts for dealing with various ek's☆69Updated 8 years ago
- Some IR notes☆73Updated 8 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 3 years ago
- A dumb set of scripts for building a cuckoo rig☆61Updated 8 years ago
- An environment for comprehensive, automated analysis of web-based exploits, based on Cuckoo sandbox.☆125Updated 9 years ago
- Mitre chopshop network decoder framework☆30Updated 8 years ago
- a Malware/Threat Analyst Desktop☆89Updated 9 years ago
- Cryptowall Tooling & Information☆34Updated 9 years ago
- Python IOC Editor☆62Updated 10 years ago
- Manage VT Alerts☆62Updated 8 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 4 years ago
- ☆75Updated 3 years ago
- Various public documents, whitepapers and articles about APT campaigns☆54Updated 8 years ago
- Command line tool for scanning streams within office documents plus xor db attack☆126Updated last year
- (Unofficial) Python API for https://malwr.com/☆62Updated 8 years ago
- Open Development projects for TekDefense☆77Updated 8 years ago
- A Windows Event Processing Utility☆46Updated 7 years ago
- Modified edition of cuckoo community modules☆50Updated 7 years ago
- Automated memory forensics analysis☆33Updated 5 years ago
- A repo to hold some scripts pertaining WMI (Windows implementation of WBEM) forensics☆85Updated 7 years ago
- Various Modules & Scripts for use with Viper Framework☆27Updated 5 years ago
- Credential Phish Analysis and Automation☆96Updated 6 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago
- A warehouse for your malware☆134Updated 11 years ago
- A powershell script for creating a Windows honeyport.☆87Updated 9 years ago
- Volatility Plugins☆21Updated 9 years ago
- ☆108Updated 8 years ago