digitalsleuth / Registry-Write-BlockLinks
Short scripts which use the registry to enable or disable write-blocking for removable disks
☆32Updated last year
Alternatives and similar repositories for Registry-Write-Block
Users that are interested in Registry-Write-Block are comparing it to the libraries listed below
Sorting:
- Various PowerShells scripts I've made (or others have made) to automate some of the boring stuff in my everyday DFIR journey!☆46Updated 9 months ago
- A script that updates KAPE (using Get-KAPEUpdate.ps1) as well as EZ Tools (within .\KAPE\Modules\bin) and the ancillary files that enhanc…☆56Updated last month
- Forensic tool for acquisition, triage and analysis of remote block devices via iSCSI protocol.☆40Updated 8 months ago
- This is a GUI (for Windows 64 bit) for a procedure to virtualize your EWF(E01), DD (raw), AFF disk image file without converting it, dire…☆54Updated 5 years ago
- WLEAPP is an open source project that aims to parse Windows OS artifacts for the purpose of triage analysis.☆32Updated last year
- Windows Forensics Environment Builder☆151Updated this week
- MS Word (DOCx) Parsing Tool☆20Updated last month
- ☆52Updated 2 weeks ago
- Documentation repository☆46Updated 9 months ago
- A GeoIP lookup utility utilizing ipinfo.io services.☆88Updated last year
- A repository of output using KAPE (!EZParser Module) for various publicly available forensic images!☆17Updated 9 months ago
- A repo to centralize some of the regular expressions I've found useful over the course of my DFIR career.☆98Updated 2 years ago
- Autopsy NBM Plugins☆16Updated last year
- Resources provided by the community that can serve to be useful for Law Enforcement worldwide☆108Updated 11 months ago
- The home of the BriMor Labs rdpieces Perl script that tries to rebuild parsed RDP Bitmap Cache images☆80Updated last year
- Windows Forensic Environment (WinFE) - based on WinPE☆33Updated 2 years ago
- A curated list of KAPE-related resources☆169Updated last month
- Vehicle Logs Events And Properties Parser☆88Updated 5 months ago
- Repository to track community hardware, data and funding.☆12Updated 3 years ago
- Case_Notes.py is a cross-platform (Windows, macOS, & Linux) python script to help make the documentation process easier.☆26Updated 2 years ago
- Personal settings for X-Ways Forensics☆32Updated 3 years ago
- Software downloads☆103Updated last month
- A list of Autopsy awesome plugins.☆74Updated 3 years ago
- http://moaistory.blogspot.com/2016/08/ie10analyzer.html☆17Updated 11 months ago
- A repo for centralizing ongoing research on the new Windows 10/11 DFIR artifact, EventTranscript.db.☆39Updated 2 years ago
- Script to process PDF files☆18Updated last month
- Plugins for parsing CSV files in Timeline Explorer. This project allows for anyone to add more supported files (i,e. they get a Line #/ta…☆26Updated last month
- Backstage Parser☆31Updated 3 years ago
- A series of python scripts to extract information from SQLite Data Files☆16Updated 2 months ago
- Automatically create iSCSI targets for all drives except for a boot device☆22Updated last month