A simple utility for stripping out either the SHA-1, MD5 or CRC values alone from the NSRL hash database
☆14Nov 19, 2021Updated 4 years ago
Alternatives and similar repositories for NSRL-Stripper
Users that are interested in NSRL-Stripper are comparing it to the libraries listed below
Sorting:
- Papers and Presentations from the DFRWS Conferences☆20Jul 12, 2022Updated 3 years ago
- CLBX file format☆20May 13, 2021Updated 4 years ago
- A fork of The Sleuthkit with Pooled Storage and APFS support. See https://www.youtube.com/watch?v=k1XPillJ7aw for more info and usage.☆27Oct 27, 2019Updated 6 years ago
- Automated Memory Forensic☆34Jul 18, 2018Updated 7 years ago
- The method and files used to generate Sysmon event logs, push them to a remote Splunk, and ingest/normalize the data for analysis.☆10Sep 28, 2020Updated 5 years ago
- A script to mine SQLite databases for hidden gems that might be overlooked☆58Sep 19, 2020Updated 5 years ago
- A small tool to easily mount APFS image on macOS for forensics.☆16Jul 30, 2020Updated 5 years ago
- A series of python scripts to extract information from SQLite Data Files☆21Nov 15, 2025Updated 4 months ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- geolocate ip addresses in IIS logs☆20Jan 8, 2025Updated last year
- ☆11Aug 3, 2018Updated 7 years ago
- Carve NTFS USN records from binary data☆27May 21, 2017Updated 8 years ago
- Scripts developed to help in mobile forensics investigations☆10Jul 4, 2017Updated 8 years ago
- A simple python script to generate nested folders based on user input. The script will also name and place a template report document and…☆11Jun 19, 2025Updated 9 months ago
- My Year of Python Repository☆28Jun 13, 2020Updated 5 years ago
- macOS Artifact Intelligence Tool☆13Apr 30, 2019Updated 6 years ago
- Web app built to allow digital forensic professionals to search for the forensic tools that will parse artifacts from various apps.☆18Apr 30, 2025Updated 10 months ago
- Just Another broken Registry Parser (JARP)☆16May 23, 2024Updated last year
- Library and tools to access the Windows SuperFetch database format☆13Nov 29, 2025Updated 3 months ago
- Extract files from ADB devices on Windows, Linux and MacOS. Mostly a wrapper for adbutils.☆37Mar 10, 2026Updated last week
- OS Lockdown☆13Nov 21, 2017Updated 8 years ago
- A Python script that gathers all valid IP addresses from all text files from a directory, and checks them against Whois database, TOR rel…☆29Jun 27, 2022Updated 3 years ago
- Python script to walk a folder or a zip file for SQLite Databases☆37Sep 20, 2023Updated 2 years ago
- /ˈhäjˌpäj/ "a confused mixture."☆13Mar 5, 2026Updated 2 weeks ago
- This is a new repository used to provide updated SQLite queries for both Photos.sqlite databases. Most of the updated queries will work o…☆13Mar 29, 2024Updated last year
- iOS Photos.sqlite queries that may help with decoding data stored in Photos.sqlite. These queries are based on testing, research and some…☆71Mar 19, 2024Updated 2 years ago
- A timestamp and date decoder written for python 3☆42Mar 9, 2026Updated last week
- It is based on bulk_extractor (https://github.com/simsong/bulk_extractor) and add scanners for record carving☆42Apr 23, 2020Updated 5 years ago
- Automatic/Custom Destinations & LNK (MS-SHLLINK) Browser☆45Mar 13, 2026Updated last week
- This is a GUI (for Windows 64 bit) for a procedure to virtualize your EWF(E01), DD (raw), AFF disk image file without converting it, dire…☆54Oct 15, 2019Updated 6 years ago
- Reveal encrypted files stored on a filesystem.☆53Nov 9, 2018Updated 7 years ago
- A tool for fetching DFIR and other GitHub tools.☆26Aug 2, 2025Updated 7 months ago
- Attempts to reverse a given partial hash to a phone number (or email) given the area code. Written for python3.☆20Oct 25, 2022Updated 3 years ago
- Assorted Python☆15Sep 6, 2024Updated last year
- mift - a mobile image forensic toolkit☆47Nov 14, 2023Updated 2 years ago
- Module(s) related to reading SEGB (fka "Biome") data from iOS, mascOS, etc.☆29Sep 9, 2025Updated 6 months ago
- Provides an overview of the inner file structure of a PDF☆24Sep 26, 2022Updated 3 years ago
- DocBleachShell is the integration of the great DocBleach, https://github.com/docbleach/DocBleach Content Disarm and Reconstruction tool i…☆21Jan 15, 2022Updated 4 years ago
- WLEAPP is an open source project that aims to parse Windows OS artifacts for the purpose of triage analysis.☆32Nov 16, 2023Updated 2 years ago