Brian Maloney's repositories

OneDriveExplorer

OneDriveExplorer is a command line and GUI based application for reconstructing the folder structure of OneDrive from the <UserCid>.dat and <UserCid>.dat.previous file.

Language:PythonLicense:MITStargazers:164Issues:9Issues:10

SEPparser

Script for parsing Symantec Endpoint Protection logs, VBNs, and ccSubSDK database.

Language:PythonLicense:MITStargazers:54Issues:9Issues:3

ProcDOT-Plugins

Plugins to add funtionality to ProcDOT. http://www.procdot.com

Language:PythonLicense:MITStargazers:22Issues:9Issues:10
Language:PythonStargazers:9Issues:5Issues:0
Language:PowerShellLicense:MITStargazers:6Issues:4Issues:1

Surge-collect

Script for deploying surge-collect on Windows

Language:PythonStargazers:4Issues:4Issues:0

WEF

Various WEF information

Language:PowerShellStargazers:3Issues:3Issues:0

autotimeliner

Automagically extract forensic timeline from volatile memory dump

Language:PythonLicense:MITStargazers:1Issues:3Issues:0

Azure-App-IDs

Curated list of well-known app ids

License:MITStargazers:1Issues:2Issues:0
Language:PythonStargazers:1Issues:3Issues:0

alerting-detection-strategy-framework

A framework for developing alerting and detection strategies for incident response.

License:MITStargazers:0Issues:2Issues:0

BackstageParser

Backstage Parser

Language:PythonLicense:NOASSERTIONStargazers:0Issues:1Issues:0
Stargazers:0Issues:1Issues:0

KapeFiles

This repository serves as a place for community created Targets and Modules for use with KAPE.

License:MITStargazers:0Issues:0Issues:0
Language:BatchfileStargazers:0Issues:0Issues:0

manuf

Parser library for Wireshark's OUI database.

Language:PythonLicense:NOASSERTIONStargazers:0Issues:3Issues:0

misc-scripts

misc scripts

Language:PythonStargazers:0Issues:3Issues:0

NBDServer

Network Block Device Server for windows with a DFIR/forensic focus.

Language:C++License:GPL-2.0Stargazers:0Issues:3Issues:0

NPP-UDL

Syntax highlighting for email files

Stargazers:0Issues:0Issues:0
License:MITStargazers:0Issues:2Issues:0

OneDrive

OneDrive log .ODL reader

Language:PythonLicense:MITStargazers:0Issues:0Issues:0

plaso_filters

Scripts to facilitate filtering with Plaso

Stargazers:0Issues:0Issues:0

pysddl

Automatically exported from code.google.com/p/pysddl

Language:PythonStargazers:0Issues:0Issues:0

quarantine-formats

Documentation and parsers for different anti-virus quarantine formats.

Stargazers:0Issues:2Issues:0

sec-vault-gen

Python utility to generate filesystem content for Obsidian.

Language:PythonLicense:MITStargazers:0Issues:1Issues:0

tnefparse

a TNEF decoding library written in python, without external dependencies

Language:PythonLicense:LGPL-3.0Stargazers:0Issues:2Issues:0

VeraCrypt

Disk encryption with strong security based on TrueCrypt

Language:CLicense:NOASSERTIONStargazers:0Issues:3Issues:0

windows-event-forwarding

A repository for using windows event forwarding for incident detection and response

Language:RoffLicense:NOASSERTIONStargazers:0Issues:3Issues:0