forensenellanebbia / volatility-profilesLinks
My Linux profiles built for Volatility 2/3
☆10Updated 3 months ago
Alternatives and similar repositories for volatility-profiles
Users that are interested in volatility-profiles are comparing it to the libraries listed below
Sorting:
- Regexplore is a Volatility plugin designed to mimic the functionality of the Registry Explorer plugins in EZsuite☆18Updated 2 years ago
- Just Another broken Registry Parser (JARP)☆16Updated last year
- ☆25Updated last year
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆66Updated 2 years ago
- macOS forensic timeline generator using the analysis result DBs of mac_apt☆93Updated 2 years ago
- Chrome Logs Events and Protobuf Parser☆39Updated 3 years ago
- Quick ESXi Log Parser☆28Updated 2 months ago
- CryptnetURLCacheParser is a tool to parse CryptAPI cache files☆20Updated last year
- ☆23Updated 10 months ago
- A sample VHDX file with multiple verbose examples of forensic and anti-forensics artifacts. Meant to be basic and can be expanded upon. P…☆27Updated 3 years ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆32Updated last month
- Volatility3 plugins developed and maintained by the community☆61Updated 2 years ago
- Contains compiled binaries of Volatility☆36Updated 7 months ago
- Vault of Windows Registry forensic artifacts☆25Updated 2 months ago
- A forensic open-source parser module for Autopsy that allows extracting the messages, comments, posts, contacts, calendar entries and rea…☆113Updated 3 weeks ago
- ☆38Updated 4 years ago
- Reads and prints information from the website MalAPI.io☆20Updated 3 years ago
- Dump quarantined files from Windows Defender☆73Updated 3 years ago
- 100 Days of YARA to be updated with rules & ideas as the year progresses☆60Updated 2 years ago
- Memory Baseliner is a script that can compare two windows memory images or perform frequency of occurrence / data stacking analysis on mu…☆55Updated 2 years ago
- Carve file metadata from NTFS index ($I30) attributes☆71Updated last year
- Windows file metadata / forensic tool.☆18Updated 3 months ago
- WLEAPP is an open source project that aims to parse Windows OS artifacts for the purpose of triage analysis.☆32Updated 2 years ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- Forensic tool for acquisition, triage and analysis of remote block devices via iSCSI protocol.☆43Updated last year
- Malformed Access Log to CSV - Convert Web Server Access Logs to CSV☆17Updated last year
- NTFS Security Descriptor Stream ($Secure:$SDS) parser☆14Updated 3 years ago
- ☆21Updated 2 months ago
- Volatility 3 Plugins☆21Updated 3 years ago
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆32Updated 3 years ago