digitalsleuth / forensics_tools
Various short scripts and tools used for Digital Forensics
☆12Updated 7 months ago
Related projects ⓘ
Alternatives and complementary repositories for forensics_tools
- Parser for Sdba memory pool tags☆17Updated 3 years ago
- WLEAPP is an open source project that aims to parse Windows OS artifacts for the purpose of triage analysis.☆31Updated last year
- Backstage Parser☆32Updated 2 years ago
- Information about the open-source-dfir slack community☆27Updated last year
- Windows 10 Live Information viewer☆33Updated 2 years ago
- Just Another broken Registry Parser (JARP)☆16Updated 6 months ago
- ☆19Updated last year
- A simple utility for stripping out either the SHA-1, MD5 or CRC values alone from the NSRL hash database☆14Updated 3 years ago
- http://moaistory.blogspot.com/2016/08/ie10analyzer.html☆14Updated 4 months ago
- ReWrite of AChoir in Go for Cross Platform☆35Updated last week
- Recycle bin artifact parser☆37Updated 2 months ago
- Search datasets for Bitlocker recovery files and triage live systems for Bitlocker keys.☆40Updated 2 months ago
- Extracts Windows user info including the password hashes☆38Updated 8 years ago
- Google Filestream Forensic Tool☆16Updated 2 years ago
- PowerShell scripts to aid investigators when utilizing O365 and Magnet Axiom.☆10Updated 2 months ago
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆35Updated last year
- A pure PowerShell/ .NET DFIR capability that dumps the Windows SRUM (System Resource Usage Monitor) database to CSVs for analysis.☆13Updated 3 years ago
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 3 years ago
- Git for me to put all my forensics stuff☆21Updated 2 months ago
- ESXi Cyber Security Incident Response Script☆20Updated 2 months ago
- Logbook for Digital Forensics and Incident Response☆49Updated 4 months ago
- Scripts and lists to help generate YARA friendly string mutations☆19Updated last year
- A quick reference guide for python script development in DFIR☆16Updated 8 months ago
- A DFVFS Backed Forensic Viewer☆39Updated 4 years ago
- Get-MiniTimeline - Triage Collection and Timeline Generation w/ KAPE☆26Updated 6 months ago
- A collaboration effort by the DFIR community to provide definitions (sometimes multiple) for common forensic terms!☆25Updated last year
- Penguin OS Forensic (or Flight) Recorder☆37Updated 4 months ago
- Tools for parsing Forensic images☆41Updated 5 years ago
- Winterfell hunt is a python script to perform auto threat hunting for malicious activities in windows OS based on collected data by winte…☆14Updated 4 years ago
- A sample VHDX file with multiple verbose examples of forensic and anti-forensics artifacts. Meant to be basic and can be expanded upon. P…☆25Updated last year