jeffbryner / NBDServer
Network Block Device Server for windows with a DFIR/forensic focus.
☆96Updated 7 years ago
Alternatives and similar repositories for NBDServer:
Users that are interested in NBDServer are comparing it to the libraries listed below
- An NTFS journal parser☆82Updated 8 years ago
- Library and tools to access the Volume Shadow Snapshot (VSS) format☆111Updated 5 months ago
- Digital Forensics Windows Registry (dfWinReg)☆49Updated 3 weeks ago
- AuditParser☆58Updated 11 years ago
- Checks with NSRL RDS servers looking for for hash matches☆112Updated 3 years ago
- Open source Python library for NTFS analysis☆81Updated 7 years ago
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆44Updated 8 years ago
- Sysmon configuration☆66Updated 6 years ago
- openioc_scan Volatility Framework plugin☆42Updated 8 years ago
- Some dfir stuff☆31Updated 3 years ago
- Python tools for IOC (Indicator of Compromise) handling☆96Updated 3 years ago
- MantaRay Automated Computer Forensic Triage Tool☆63Updated 5 years ago
- Yet another registry parser☆130Updated 2 years ago
- Extract common Windows artifacts from source images and VSCs☆66Updated 3 years ago
- Windows Prefetch parser. Supports all known versions from Windows XP to Windows 10.☆108Updated last week
- Maps process creation logged by Sysmon uses Google Org Chart API☆24Updated 8 years ago
- Tool to parse SRU database☆24Updated 6 years ago
- Decode security descriptors in $Secure on NTFS☆20Updated 2 years ago
- A powershell script for creating a Windows honeyport.☆87Updated 9 years ago
- Command line utility and Python package to ease the (un)mounting of forensic disk images☆122Updated last year
- Tools from WFA 4/e, timeline tools, etc.☆133Updated 10 months ago
- Tool suite for inspecting NTFS artifacts.☆216Updated last year
- A Powershell script for frequency analysis of separated values data files.☆17Updated 10 years ago
- Reconstruct process trees from event logs☆146Updated 4 years ago
- Automated memory forensics analysis☆32Updated 5 years ago
- SystemInspector is a script to pull a majority of the security-relevant files and settings from a system.☆18Updated 6 years ago