
amcache-evilhunter
Parse and analyze a Windows Amcache.hve registry hive, VirusTotal integration.
digital-forensicsforensicsincident-response+2
114

Parse and analyze a Windows Amcache.hve registry hive, VirusTotal integration.

DShield Sensor Log Collection with ELK

Parse citrix netscaler logs to check for signs of CVE-2023-4966 exploitation

A python script that can detect and parse loki-bot (malware) related network traffic. This script can be helpful to DFIR analysts and security…

This is a repo for fetching Applocker event log by parsing the win-event log