malscan Logo

malscan

0
Free
Visit Website

Malscan is a tool to scan process memory for YARA matches and execute Python scripts if a match is found. This is useful for extracting configurations from malware process memory. The tool allows users to define YARA rules to detect specific configurations in memory and run custom Python scripts upon detection.

FEATURES

ALTERNATIVES

libevt is a library to access and parse Windows Event Log (EVT) files.

Toolkit for post-mortem analysis of Docker runtime environments using forensic HDD copies.

A cross-platform registry hive editor for forensic analysis with advanced features like hex viewer and reporting engine.

Advanced computer forensics software with efficient features.

A command-line utility for extracting human-readable text from binary files.

A tool for restoring defocused and blurred images with various deconvolution techniques and fast processing capabilities.

Remote Acquisition Tool

A user-friendly and fast Forensic Analysis tool with features like tagging files and generating preview reports.

PINNED