Highlights
- Pro
-
Emmy Public
A python script to verify an .eml file for SPF, DKIM and DMARC.
-
-
BatchUnpack Public
A python script to unpack packed malware in a directory and its subdirectories.
Python UpdatedNov 1, 2024 -
VTDownloader Public
Forked from mibeh/VTDownloaderA command-line tool written in Python 3 to download files from VirusTotal
Python GNU General Public License v3.0 UpdatedOct 28, 2024 -
VSRenameFileUtility Public
A script to extract VirusShare zip downloads and apply the correct extensions.
Python UpdatedOct 28, 2024 -
VirusShareAPIScript Public
A python script obeying VS rate limitations to download malware/payloads to a directory from a hash file.
Python UpdatedOct 26, 2024 -
MalwareBazaarAPIScript Public
A python script to download malware/payloads to a directory from a hash file.
Python UpdatedOct 26, 2024 -
MemberProjects Public
Forked from Digital-Forensics-Discord-Server/MemberProjectsA repo that contains links to projects by members of the Digital Forensics Discord Server! This is meant to help promote projects made by our very own members and to support open source development.
MIT License UpdatedOct 12, 2023 -
-
-
TheHitchhikersGuidetoDFIRExperiencesFromBeginnersandExperts Public
Forked from Digital-Forensics-Discord-Server/TheHitchhikersGuidetoDFIRExperiencesFromBeginnersandExpertsThe official repo for a project involving a crowdsourced DFIR book. The main purpose of this book is to give anyone interested an opportunity to write a chapter of a book to get their name out ther…
Ruby MIT License UpdatedJul 13, 2023 -
SigHunter Public
Forked from AndrewRathbun/SigHunterA C# (.NET 6) tool to compare the file signature of files recursively and inform the user of matches and mismatches
C# MIT License UpdatedJul 9, 2023 -
libscca Public
Forked from libyal/libsccaLibrary and tools to access the Windows Prefetch File (SCCA) format.
C GNU Lesser General Public License v3.0 UpdatedJul 9, 2023 -
DFIRArtifactMuseum Public
Forked from AndrewRathbun/DFIRArtifactMuseumThe goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifact validation processes as well as increase access to artifa…
HTML MIT License UpdatedJul 9, 2023 -
-
KapeFiles Public
Forked from EricZimmerman/KapeFilesThis repository serves as a place for community created Targets and Modules for use with KAPE.
MIT License UpdatedJul 7, 2023 -
PrefetchDecompressionEnMasse Public
Built upon @dfirfpi's w10pfdecomp.py, a prefetch decompressor for KAPE Module.
-
MMDBCmd Public
Built upon @ovimihai's MaxMind-python-mmdb-to-csv-converter, a .mmdb parser for KAPE Module.
Python UpdatedJul 2, 2023 -
RegistryForensicsCheatSheet Public
Initial version of personal cheatsheet for windows registry forensics
-
pdfobjflow Public
Forked from digitalsleuth/pdfobjflowPython script to create an object flow of PDF data input from pdf-parser
Python UpdatedMay 3, 2022 -
JwtHmacSecret Public
A python script to brute force JWT HMAC secrets by utilizing a wordlist.
-
GetShellCodeBin Public
A python script to extract obfuscated shell code binaries.
-
-
StegoSpace Public
A python script to output hidden text inside .txt files that use different whitespace chars typically ' ' and '\t'.
Python UpdatedSep 15, 2021 -
gitattributes Public
Forked from gitattributes/gitattributesA collection of useful .gitattributes templates
MIT License UpdatedApr 2, 2021