Win10
Win10 research suite
A PowerShell script collection focused on Windows 10/11 forensic analysis and research tools.
Win 10/11 related research
178 stars
22 watching
33 forks
Language: PowerShell
last commit: 11 months ago amcachebamdfireventlogeventsforensicjumplistkeyword-listskeywordsmediaplayer-librarynotificationsobjectidsticky-notestimelinewdiwin10win11windowsxmlyourphone
Related projects:
Repository | Description | Stars |
---|---|---|
securityjoes/forensicminer | Automates evidence collection and analysis from Windows machines using PowerShell. | 148 |
gfoss/psrecon | Automates data collection and forensic analysis from remote Windows hosts using PowerShell | 479 |
swisscom/invoke-forensics | Tools for automating forensic analysis with KAPE and RegRipper | 109 |
evild3ad/memprocfs-analyzer | Automated forensic analysis tool for Windows memory dumps | 540 |
anssi-fr/dfir4vsphere | A PowerShell module for collecting logs and forensics data from VMware vSphere environments. | 140 |
sadprocessor/somestuff | A collection of PowerShell scripts and utilities | 280 |
bplasmeijer/sitecore-symposium-2020-containers-aks | A PowerShell-based script to deploy Sitecore 10 on AKS with external services like SQL, Solr, and Redis. | 12 |
johnlatwc/pypowershellxray | Decodes and analyzes encoded PowerShell scripts to identify potential shellcode and reverse-engineered APIs. | 215 |
vexx32/pskoans | An interactive way to learn PowerShell through Pester unit testing and kōans. | 1,722 |
invoke-ir/powerforensics | A C#-based framework for analyzing and investigating hard drive forensic data | 1,385 |
dissectmalware/officeforensictools | A Python-based collection of tools for gathering forensic information from Office documents | 26 |
tonyphipps/meerkat | A collection of PowerShell modules for gathering and analyzing Windows-based endpoint artifacts. | 435 |
k-sec-tools/yarafilecheckerlib | A YARA-based library to analyze files and archives for potential maliciousness | 2 |
kasperskylab/klara | Helps Threat Intelligence researchers hunt for new malware by efficiently scanning large collections of files with Yara rules | 697 |
sentinelabs/sentinellabs_revcore_tools | A suite of PowerShell scripts and tools for reverse engineering Windows malware analysis. | 89 |