Win10

Win10 research suite

A PowerShell script collection focused on Windows 10/11 forensic analysis and research tools.

Win 10/11 related research

GitHub

179 stars
23 watching
33 forks
Language: PowerShell
last commit: almost 3 years ago
amcachebamdfireventlogeventsforensicjumplistkeyword-listskeywordsmediaplayer-librarynotificationsobjectidsticky-notestimelinewdiwin10win11windowsxmlyourphone

Related projects:

RepositoryDescriptionStars
securityjoes/forensicminerAutomates evidence collection and analysis from Windows machines using PowerShell.149
gfoss/psreconAutomates data collection and forensic analysis from remote Windows hosts using PowerShell479
swisscom/invoke-forensicsTools for automating forensic analysis with KAPE and RegRipper109
evild3ad/memprocfs-analyzerAutomated tool for forensic analysis of Windows memory dumps555
anssi-fr/dfir4vsphereA PowerShell module for collecting logs and forensics data from VMware vSphere environments.143
sadprocessor/somestuffA collection of PowerShell scripts and utilities280
bplasmeijer/sitecore-symposium-2020-containers-aksA PowerShell-based script to deploy Sitecore 10 on AKS with external services like SQL, Solr, and Redis.12
johnlatwc/pypowershellxrayDecodes and analyzes encoded PowerShell scripts to identify potential shellcode and reverse-engineered APIs.215
vexx32/pskoansAn interactive way to learn PowerShell through Pester unit testing and kōans.1,727
invoke-ir/powerforensicsA C#-based framework for analyzing and investigating hard drive forensic data1,389
dissectmalware/officeforensictoolsA Python-based collection of tools for gathering forensic information from Office documents26
tonyphipps/meerkatA collection of PowerShell modules for gathering and analyzing Windows-based endpoint artifacts.436
k-sec-tools/yarafilecheckerlibA YARA-based library to analyze files and archives for potential maliciousness2
kasperskylab/klaraHelps Threat Intelligence researchers hunt for new malware by efficiently scanning large collections of files with Yara rules698
sentinelabs/sentinellabs_revcore_toolsA suite of PowerShell scripts and tools for reverse engineering Windows malware analysis.90