Personal settings for X-Ways Forensics
☆35Apr 28, 2022Updated 4 years ago
Alternatives and similar repositories for xways-forensics
Users that are interested in xways-forensics are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Forensic cheatsheets for use with cheat☆15Dec 2, 2021Updated 4 years ago
- Carve $MFT records from a chunk of data (for instance a memory dump)☆16Aug 21, 2016Updated 9 years ago
- Toolset to analyze disks encrypted with McAFee FDE technology☆19Mar 11, 2021Updated 5 years ago
- Binaries for the log2timeline projects and dependencies☆40Jul 21, 2026Updated last week
- A repo for centralizing ongoing research on the new Windows 10/11 DFIR artifact, EventTranscript.db.☆43Jul 18, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A lightweight C++/C AFF4 reader library☆17Feb 5, 2026Updated 5 months ago
- Parses KAPE module files and downloads binaries referenced by BinaryURL☆18Oct 2, 2019Updated 6 years ago
- Parser for Sdba memory pool tags☆21Jul 16, 2021Updated 5 years ago
- An advanced parser for INDX records☆30Aug 7, 2019Updated 6 years ago
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆22Sep 30, 2022Updated 3 years ago
- Various Topics☆18Apr 30, 2025Updated last year
- X-Ways Forensic/ WinHex templates☆53Jan 25, 2022Updated 4 years ago
- Automated forensics written in PowerShell☆34Sep 29, 2019Updated 6 years ago
- A dedicated repo to interact with the API of Timesketch☆12Sep 17, 2021Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- PowerShell scripts to aid investigators when utilizing O365 and Magnet Axiom.☆12Aug 26, 2024Updated last year
- Here are some tools I developed to help analyze malware☆11Nov 8, 2023Updated 2 years ago
- SQLite queries☆88Mar 8, 2023Updated 3 years ago
- Windows.EDB Browser☆63Mar 6, 2023Updated 3 years ago
- StickyParser - Sticky Notes Forensic. A Windows Sticky Notes Praser (snt and plum.sqlite supported). Additional Feature: SQLite Recovery …☆22Jul 18, 2023Updated 3 years ago
- Tools from WFA 4/e, timeline tools, etc.☆146Feb 29, 2024Updated 2 years ago
- CDPO is a tool to validate, de-duplicate, combine, query, and encrypt track data recovered from a breach.☆15Jun 23, 2017Updated 9 years ago
- Win 10/11 related research☆201Dec 19, 2023Updated 2 years ago
- MacOS incident Response Toolkit. Mostly written while stuck on a NJTransit train.☆20Feb 20, 2020Updated 6 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indi…☆112Jun 16, 2026Updated last month
- iOS Backup Examiner - A forensics tool for parsing an iOS backup's Info.plist file☆23Dec 5, 2016Updated 9 years ago
- A tool designed to extract data from a logical ReFS 3.4 forensic image produced by FTK Imager☆17Nov 22, 2023Updated 2 years ago
- Decode security descriptors in $Secure on NTFS☆22Feb 24, 2022Updated 4 years ago
- MS Word (DOCx) Parsing Tool☆25Jun 24, 2026Updated last month
- A set of tools for collecting forensic information☆28Apr 4, 2020Updated 6 years ago
- Recover EXT filesystem info from carved directory blocks☆19Jun 23, 2017Updated 9 years ago
- Blueteam operational triage registry hunting/forensic tool.☆148Sep 2, 2025Updated 10 months ago
- Cast is an installer for any compatible Saltstack based distribution like SIFT or REMnux☆138Updated this week
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Malformed Access Log to CSV - Convert Web Server Access Logs to CSV☆18Sep 3, 2024Updated last year
- $I30 INDX Carver☆18Jun 23, 2025Updated last year
- Python script for parsing ESET (NOD32) virlog.dat file.☆16Sep 28, 2017Updated 8 years ago
- Parser for $LogFile on NTFS☆218Jun 5, 2026Updated last month
- onigiri - remote malware triage script☆24Nov 5, 2015Updated 10 years ago
- A repository of output using KAPE (!EZParser Module) for various publicly available forensic images!☆17Aug 31, 2024Updated last year
- MantaRay Automated Computer Forensic Triage Tool☆66Feb 19, 2019Updated 7 years ago