stuxnet999 / EventTranscriptParser
Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)
☆68Updated last year
Alternatives and similar repositories for EventTranscriptParser:
Users that are interested in EventTranscriptParser are comparing it to the libraries listed below
- ☆21Updated 3 months ago
- macOS Artifacts☆29Updated 2 months ago
- Memory Baseliner is a script that can compare two windows memory images or perform frequency of occurrence / data stacking analysis on mu…☆53Updated last year
- Quick ESXi Log Parser☆19Updated 3 months ago
- Contains compiled binaries of Volatility☆33Updated 3 months ago
- A high-speed forensic processing engine purpose-built for DFIR investigators. Quickly consolidate CSV output from processed triage eviden…☆44Updated this week
- Parses USB connection artifacts from offline Registry hives☆97Updated 2 months ago
- USN Journal full path builder☆59Updated 7 months ago
- Tools and scripts to deploy and manage OpenRelik instances☆13Updated 2 months ago
- Linux Baseline and Forensic Triage Tool - BETA☆55Updated 2 years ago
- Various PowerShells scripts I've made (or others have made) to automate some of the boring stuff in my everyday DFIR journey!☆45Updated 7 months ago
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆84Updated 2 months ago
- A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub☆70Updated last year
- Regexplore is a Volatility plugin designed to mimic the functionality of the Registry Explorer plugins in EZsuite