James Habben's repositories

evolve

Web interface for the Volatility Memory Forensics Framework

sysmon-queries

Queries to parse sysmon event log file with microsoft logparser

FirefoxCache2

Python scripts for parsing the index file and individual cache files from the cache2 folder of Firefox defaulted on in version 32

4n6-app-finder

Web app built to allow digital forensic professionals to search for the forensic tools that will parse artifacts from various apps.

Language:JavaScriptStargazers:16Issues:0Issues:0

EnCaseNetworkFramework

This is a framework written in EnScript to utilize the network capabilities of EnCase. The purpose is to allow for someone to build a quick network enabled EnScript to respond quickly to threats with minimal code being written.

ccm-rua-enscript

EnScript to find and parse CCM_RecentlyUsedApps records

Language:PythonStargazers:10Issues:4Issues:0

Windows-Prefetch-Parser

Parse Windows Prefetch files: Supports XP - Windows 10 Prefetch files

Language:PythonLicense:NOASSERTIONStargazers:9Issues:4Issues:0

HelpfulPython

Various Python scripts that are helpful for me

Language:PythonStargazers:6Issues:4Issues:0

bstrings

A better strings utility!

Language:C#License:MITStargazers:1Issues:3Issues:0

ClogFirefoxParser

Use this python script to parse the log file for KeyUp or KeyDown events and print the characters that were typed

Language:PythonStargazers:1Issues:3Issues:0

RegRipper2.8

RegRipper version 2.8

Language:PerlLicense:NOASSERTIONStargazers:1Issues:2Issues:0

VLEAPP

Vehicle Logs Events And Properties Parser

Language:JavaScriptLicense:MITStargazers:1Issues:0Issues:0

ALEAPP

Android Logs Events And Protobuf Parser

Language:PythonLicense:MITStargazers:0Issues:0Issues:0

community

Volatility plugins developed and maintained by the community

Language:PythonStargazers:0Issues:2Issues:0
Language:C++License:Apache-2.0Stargazers:0Issues:2Issues:0

flightsim

A utility to generate malicious network traffic and evaluate controls

Language:GoStargazers:0Issues:2Issues:0

iLEAPP

iOS Logs, Events, And Plist Parser

Language:PythonLicense:MITStargazers:0Issues:0Issues:0

kaitai_struct_formats

Kaitai Struct: library of binary file formats (.ksy)

Language:HTMLStargazers:0Issues:2Issues:0

oletools

oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.

Language:PythonStargazers:0Issues:2Issues:0

PowerForensics

PowerShell - Live disk forensics platform

Language:C#License:Apache-2.0Stargazers:0Issues:2Issues:0

recteq

Control & Monitor your Recteq Grill

Language:PythonLicense:MITStargazers:0Issues:1Issues:0

Registry

Full featured, offline Registry parser in C#

Language:C#License:MITStargazers:0Issues:2Issues:0

RLEAPP

Returns Logs Events And Properties Parser

Language:PythonLicense:MITStargazers:0Issues:0Issues:0
Language:PowerShellLicense:GPL-2.0Stargazers:0Issues:2Issues:0

volatility

An advanced memory forensics framework

Language:PythonLicense:GPL-2.0Stargazers:0Issues:2Issues:0