Fastir_Collector

Windows forensic collector

A tool for collecting and analyzing Windows system artefacts on live systems

GitHub

506 stars
63 watching
126 forks
Language: Python
last commit: almost 4 years ago
Linked from 2 awesome lists


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
sekoialab/fastir_collector_linux A tool for gathering and recording information from live Linux systems for forensic analysis 173
ownsecurity/fastir_artifacts A tool for collecting forensic artifacts from live hosts across multiple operating systems. 160
orlikoski/cylr A tool that collects and preserves forensic artifacts from NTFS file systems without impacting the host system. 645
securityjoes/forensicminer Automates evidence collection and analysis from Windows machines using PowerShell. 148
codeyourweb/fastfinder Tools for detecting suspicious files and directories on Windows and Linux endpoints. 232
forensicanalysis/artifactcollector A tool to extract forensic artifacts from various operating systems 270
orlikoski/cdqr A tool for analyzing forensic data from various devices and platforms 334
travisfoley/dfirtriage A digital forensic tool designed to gather and analyze data from Windows-based systems in incident response scenarios. 334
jklepsercyber/defender-detectionhistory-parser A Python-based tool for parsing and analyzing Windows Defender's DetectionHistory forensic artifact. 109
dissectmalware/officeforensictools A Python-based collection of tools for gathering forensic information from Office documents 26
flo354/iosforensic A tool to aid in forensic analysis of iOS devices 63
op7ic/unix_collector A tool for collecting forensic data from various UNIX-like systems 32
vitaly-kamluk/bitscout A customizable tool for creating bootable disk images for remote system analysis and forensic investigations. 462
omenscan/achoir A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. 183
omenscan/achoirx A Go-based forensic collection and analysis tool designed for cross-platform use. 35