$MFT Record Viewer
☆24Nov 9, 2022Updated 3 years ago
Alternatives and similar repositories for MFT_Record_Viewer
Users that are interested in MFT_Record_Viewer are comparing it to the libraries listed below
Sorting:
- Windows 10 Live Information viewer☆38Jan 27, 2022Updated 4 years ago
- A modified fork of Be.HexEditor for use in debug tools☆15Jan 5, 2022Updated 4 years ago
- $MFT directory tree reconstruction & FILE record info☆326Oct 7, 2024Updated last year
- Windows.EDB Browser☆60Mar 6, 2023Updated 2 years ago
- Library to handle the files in zff format (file format to store and handle forensic acquisitions).☆21Feb 9, 2026Updated 3 weeks ago
- PowerShell scripts to aid investigators when utilizing O365 and Magnet Axiom.☆12Aug 26, 2024Updated last year
- Enhanced-PsExec the GUI edition☆13Sep 8, 2021Updated 4 years ago
- RegFineViewer is an utility to visualize and navigate easily the Windows Registry☆18Jan 20, 2021Updated 5 years ago
- Work in Progress repo☆15Apr 18, 2019Updated 6 years ago
- Crowdstrike Falcon Host script for iterating through instances to get alert and other relevant data☆13Jul 16, 2019Updated 6 years ago
- Vagrant Files to create a Virtualbox VM for Malware Analysis☆13Jun 1, 2021Updated 4 years ago
- Evtx Log (xml) Browser☆56Mar 12, 2023Updated 2 years ago
- ☆12Jun 3, 2022Updated 3 years ago
- Notes from my "Implementing a Kick-Butt Training Program: Blue Team GO!" talk☆14Mar 4, 2019Updated 7 years ago
- A PowerShell module for querying the National Vulnerability Database☆24May 2, 2024Updated last year
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆64Dec 18, 2024Updated last year
- ☆18Mar 26, 2025Updated 11 months ago
- Parser for Sdba memory pool tags☆21Jul 16, 2021Updated 4 years ago
- A repository of output using KAPE (!EZParser Module) for various publicly available forensic images!☆17Aug 31, 2024Updated last year
- Discover potential timestamps within the Windows Registry☆19Apr 22, 2014Updated 11 years ago
- ☆17Jan 21, 2026Updated last month
- A small tool to easily mount APFS image on macOS for forensics.☆16Jul 30, 2020Updated 5 years ago
- Get USB Devices from Registry hives☆22Nov 15, 2021Updated 4 years ago
- Python web app for previewing data in a Chrome Profile Folder☆23Jul 1, 2024Updated last year
- Web app built to allow digital forensic professionals to search for the forensic tools that will parse artifacts from various apps.☆19Apr 30, 2025Updated 10 months ago
- ☆38Aug 27, 2021Updated 4 years ago
- ☆21May 8, 2022Updated 3 years ago
- From 2011: Quickly search for files in NTFS volumes parsing the Master File Table (MFT). A decent amount of how NTFS and MFT work was pai…☆29Oct 14, 2019Updated 6 years ago
- ☆22Jan 31, 2023Updated 3 years ago
- Google Filestream Forensic Tool☆22Mar 10, 2022Updated 3 years ago
- ☆20Jan 10, 2025Updated last year
- A batch script that checks Windows 11 readiness on your PC☆20Aug 16, 2023Updated 2 years ago
- Library to process OLE compound file format. This is a work in progress and was initially written for jumplist parsing (for which it does…☆19Feb 2, 2025Updated last year
- Formely KMon, a Windows Kernel Driver designed to prevent malware attacks by monitoring the creation of registry keys in common autorun l…☆21Feb 15, 2014Updated 12 years ago
- Automating forensic data extraction, reduction, and overall triage of cold disk and memory images.☆21Mar 12, 2019Updated 6 years ago
- A tool for fetching DFIR and other GitHub tools.☆25Aug 2, 2025Updated 7 months ago
- Finds event logs between two time points. Useful for helpdesk/support/malware analysis.☆47Feb 26, 2019Updated 7 years ago
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆46Jan 2, 2022Updated 4 years ago
- ☆62Oct 12, 2024Updated last year