Git Product home page Git Product logo

ekfiddle's Introduction

EKFiddle v.1.0.0

Your Swiss Army knife to analyze malicious web traffic.

Settings Window

Installation

Alternatively, download EKFiddle.dll and put it into Fiddler's Scripts folder (%AppData%\Local\Programs\Fiddler\Scripts)

Note: The EKFiddle.dll version replaces the previous CustomRules.cs.

Features

Top level menu

The top level menu gives you the ability to access certain features and settings for the EKFiddle extension.

Regexes

The Regexes menu item lets you view, edit, run and update the regexes that are used to identify web sessions and color them / add comments accordingly.

Settings Window

Advanced Filters

The Advanced Filters menu item is for filtering web traffic based on a compiled list of domains, URLs, IP addresses or hashes that you want to exclude.

Settings Window

UI mode

Fiddler's default UI only shows a limited number of columns. By choosing the Advanced UI, you can view more information about web sessions, including CMS type, SHA-256, etc.

Settings Window

Real-time monitoring options

  • Real-time monitoring
  • CMS detection
  • Inspect Images (slow)

These real-time options can be enabled to automatically flag traffic as web sessions are being captured. CMS detection attempts to identify what kind of Content Management System a website is running and displays it within a new column (Advanced UI required). Inspect Images will look at the content of supposed images to see if they are the wrong mime-type or hide content (steganography).

Settings Window

Themes

Customize Fiddler's application and SAZ icons with the EKFiddle theme or retro versions of Fiddler.

Settings Window

Settings Window

AutoBrowser

Automate browsing tasks by loading a list of URLs from a text file and let Fiddler record all the traffic.

Settings Window

Check for Updates...

Check for the latest version of EKFiddle.

About

Displays the About page for the EKFiddle project.

Contextual menu

The contextual menu (right click) allows you to perform additional actions on the selected web session(s).

Settings Window

Hostname

  • Copy
  • Google Search
  • Internet Archive Lookup
  • Sucuri SiteCheck Scan
  • Urlscan.io Lookup
  • VirusTotal Lookup

IP Address

  • Copy
  • Google Search
  • Urlscan.io Lookup
  • VirusTotal Lookup

Response Body

  • Copy SHA-256
  • Copy SHA-1
  • Copy MD5
  • Save to Disk
  • Urlscan.io Lookup
  • VirusTotal Lookup

Extract

  • Google Analytics ID
  • Phone Number
  • CC Skimmer

Filter

  • Hide Hostname
  • Hide IP Address
  • Hide URL
  • Hide Response Body Hash

Connect-the-dots

This feature enables you to see the flow between a web session and previous ones. This is helpful to retrace traffic.

Full Traffic Summary

Copies to the clipboard a text-base summary of web sessions that can be easily used to share with others.

Tags

Add or edit tags (separate column in Advanced UI mode) for each web session.

Uninstallation

  • Delete EKFiddle.dll from Fiddler's Script folder, delete EKFiddle's folder (Documents\Fiddler2\EKFiddle)

ekfiddle's People

Contributors

malwareinfosec avatar

Watchers

James Cloos avatar  avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.