AppCompatProcessor Logo

AppCompatProcessor

0
Free
Visit Website

AppCompatProcessor has been designed to extract additional value from enterprise-wide AppCompat / AmCache data beyond the classic stacking and grepping techniques. Note: Windows platform support has been temporarily removed (expect to see it back shortly though). Installation: OSX: You need Python 2.7+, libregf and pyregf (python bindings) from https://github.com/libyal/libregf -Option A Source distribution package from https://github.com/libyal/libregf/releases ./configure --enable-python && make sudo make install python setup.py build python setup.py install -Option B Direct from source git clone https://github.com/libyal/libregf.git cd libregf/ ./synclibs.sh ./autogen.sh ./configure --enable-python && make sudo make install python setup.py build python setup.py install The rest of the requirements you can handle with 'pip install -r requirements.txt'. Linux: You need Python 2.7+ and 'sudo pip install -r requirements.txt' should take care of everything for you. If you have issues with libregf or

FEATURES

ALTERNATIVES

A PowerShell script to interact with the MITRE ATT&CK Framework via its own API using the deprecated MediaWiki API.

A tool for extracting IOCs from various input sources and converting them into JSON format.

Open Source Intelligence solution for threat intelligence data enrichment and quick analysis of suspicious files or malware.

Cortex is a tool for analyzing observables at scale and automating threat intelligence, digital forensics, and incident response.

Create deceptive webpages to deceive and redirect attackers away from real websites by cloning them.

In-depth analysis of real-world attacks and threat tactics

Cisco Umbrella is a cloud security platform that offers protection against threats on the internet by blocking malicious activity.

msticpy is a library for InfoSec investigation and hunting in Jupyter Notebooks with extensive functionality for log data analysis, threat intelligence enrichment, and visualization.