python-evt in rshipp/awesome-malware-analysis

Pure Python parser for classic Windows Event Log files (.evt)

updated at May 9, 2024, 2:01 a.m.

Python

5 +0

42 +1

12 +0

GitHub
EVTXtract in rshipp/awesome-malware-analysis

EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.

updated at April 14, 2024, 1:56 p.m.

Python

18 +0

173 +0

24 +0

GitHub
shellbags in apsdehal/awesome-ctf

Cross-platform, open-source shellbag parser

updated at April 4, 2024, 3:27 p.m.

Python

16 +0

148 +0

39 +0

GitHub