Parser for Sdba memory pool tags
☆20Jul 16, 2021Updated 5 years ago
Alternatives and similar repositories for SdbaParser
Users that are interested in SdbaParser are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆12Aug 3, 2018Updated 8 years ago
- Forensic cheatsheets for use with cheat☆15Dec 2, 2021Updated 4 years ago
- Just Another broken Registry Parser (JARP)☆16May 23, 2024Updated 2 years ago
- A repo for centralizing ongoing research on the new Windows 10/11 DFIR artifact, EventTranscript.db.☆43Jul 18, 2022Updated 4 years ago
- Backstage Parser☆33Jun 23, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Evtx Log (xml) Browser☆60Mar 12, 2023Updated 3 years ago
- http://moaistory.blogspot.com/2018/10/winsearchdbanalyzer.html☆134Jul 20, 2024Updated 2 years ago
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆64Dec 18, 2024Updated last year
- Python web app for previewing data in a Chrome Profile Folder☆28Jul 1, 2024Updated 2 years ago
- Set of utilities for getting information about Windows Events☆15Jun 5, 2018Updated 8 years ago
- Decode security descriptors in $Secure on NTFS☆22Feb 24, 2022Updated 4 years ago
- Chrome/Chromium Forensic Tool : Parses History, Visited Links, Downloaded Files and Cache☆22May 30, 2026Updated 3 months ago
- A C# (.NET 6) tool to compare the file signature of files recursively and inform the user of matches and mismatches☆18Nov 29, 2024Updated last year
- Module(s) related to reading SEGB (fka "Biome") data from iOS, mascOS, etc.☆38Jul 13, 2026Updated 2 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Google Filestream Forensic Tool☆22Mar 10, 2022Updated 4 years ago
- An exercise to practice deobfuscating PowerShell Scripts.☆26Feb 10, 2023Updated 3 years ago
- The ultimate streamline for Volatility 3. Speed up process of memory artifacts extraction phase☆14Dec 19, 2024Updated last year
- BitUnlocker is a minimal, interactive Bash script that helps unlock BitLocker volumes and either decrypt them to an image file or mount t…☆15Aug 21, 2025Updated last year
- $I30 INDX Carver☆18Jun 23, 2025Updated last year
- Single-file desktop GUI for searching, browsing, and analyzing SQLite databases. Python + tkinter. No install required.☆25Apr 25, 2026Updated 4 months ago
- Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indi…☆113Jun 16, 2026Updated 3 months ago
- A command-line tool for searching files, directories, and alternate data streams directly from NTFS image files.☆28Jun 1, 2026Updated 3 months ago
- This is to edit a training forensic image file (raw/dd) and zero out all the unnecessary files.☆11Jun 21, 2025Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- DC3 SQLite Dissect☆75Nov 4, 2024Updated last year
- A collection of PowerShell scripts for analyzing macOS Forensic Artifacts☆35Mar 16, 2026Updated 6 months ago
- ☆23Mar 12, 2025Updated last year
- Carve file metadata from NTFS index ($I30) attributes☆73May 25, 2026Updated 3 months ago
- macos-collector - Automated Collection of macOS Forensic Artifacts for DFIR☆52Updated this week
- The home of the BriMor Labs rdpieces Perl script that tries to rebuild parsed RDP Bitmap Cache images☆89Aug 29, 2023Updated 3 years ago
- Carve $MFT records from a chunk of data (for instance a memory dump)☆16Aug 21, 2016Updated 10 years ago
- MS Word (DOCx) Parsing Tool☆25Jun 24, 2026Updated 2 months ago
- OneDrive log .ODL reader☆174Nov 3, 2024Updated last year
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Yet another registry parser☆141Apr 15, 2022Updated 4 years ago
- Windows Forensics Salt States☆22Updated this week
- Win 10/11 related research☆202Dec 19, 2023Updated 2 years ago
- CryptnetURLCacheParser is a tool to parse CryptAPI cache files☆24Aug 3, 2024Updated 2 years ago
- Windows link file (shortcuts) examiner☆68Jun 9, 2024Updated 2 years ago
- ☆20Apr 26, 2026Updated 4 months ago
- Open-source desktop workbench for digital forensic analysis. Inspect ZIP/TAR/7z archives and iTunes/Android backups. Parse and view ABX, …☆68Updated this week