Pinned Repositories
KAPE-Automation
Lyman
Lyman’s purpose is to aid in the creation of .cstruct files. These files help to parse OneDrive logs into their components which can lead to better log decryption. By focusing on the data rather than trying to learn how to construct these files, it becomes easier to extract data that otherwise might be missed or misinterpreted.
ODEFiles
cstruct files are yaml based files with cstruct definitions in them. They act as a map on how the log entry should be parsed and eliminating garbage data that would otherwise pose an issue when it comes to de-obfuscation.
OneDriveExplorer
OneDriveExplorer is a command line and GUI based application for reconstructing the folder structure of OneDrive from the <UserCid>.dat and <UserCid>.dat.previous file.
Personal-Vault-BEK
Script to automate saving OneDrive PersonalVault BEK file
ProcDOT-Plugins
Plugins to add funtionality to ProcDOT. http://www.procdot.com
pystemon
Monitoring tool for PasteBin-alike sites written in Python. Inspired by pastemon http://github.com/xme/pastemon
Redline-Process-Tree-Report
Graphical representation of processes from Redline
SEPparser
Script for parsing Symantec Endpoint Protection logs, VBNs, and ccSubSDK database.
walitean
Beercow's Repositories
Beercow/Maildb
Python Web App to Parse and Track Email and http Pcap Files.
Beercow/Chaosreader
An any-snarf program that processes application protocols (HTTP/FTP/...) from tcpdump or snoop files and stores session and file data
Beercow/CapTipper
Malicious HTTP traffic explorer tool
Beercow/DLLRunner
Smart DLL execution for malware analysis in sandbox systems
Beercow/malcontrol
Malware Control Monitor
Beercow/malicious-domain-profiling
Automatically exported from code.google.com/p/malicious-domain-profiling
Beercow/malware-crawler
Automatically exported from code.google.com/p/malware-crawler
Beercow/Productivity-Tools
Tools I created for myself: OneNote to Markdown Converter, HTML Obfuscator, Simple RegEx and more...
Beercow/RTL8188-hostapd
hostapd for Realtek RTL8188
Beercow/sysmon-queries
Queries to parse sysmon event log file with microsoft logparser