Brian Maloney's repositories
OneDriveExplorer
OneDriveExplorer is a command line and GUI based application for reconstructing the folder structure of OneDrive from the <UserCid>.dat and <UserCid>.dat.previous file.
ProcDOT-Plugins
Plugins to add funtionality to ProcDOT. http://www.procdot.com
Surge-collect
Script for deploying surge-collect on Windows
autotimeliner
Automagically extract forensic timeline from volatile memory dump
Azure-App-IDs
Curated list of well-known app ids
alerting-detection-strategy-framework
A framework for developing alerting and detection strategies for incident response.
BackstageParser
Backstage Parser
KapeFiles
This repository serves as a place for community created Targets and Modules for use with KAPE.
misc-scripts
misc scripts
NPP-UDL
Syntax highlighting for email files
OneDrive
OneDrive log .ODL reader
plaso_filters
Scripts to facilitate filtering with Plaso
pysddl
Automatically exported from code.google.com/p/pysddl
quarantine-formats
Documentation and parsers for different anti-virus quarantine formats.
sec-vault-gen
Python utility to generate filesystem content for Obsidian.
windows-event-forwarding
A repository for using windows event forwarding for incident detection and response