Win10

Win10 research suite

A PowerShell script collection focused on Windows 10/11 forensic analysis and research tools.

Win 10/11 related research

GitHub

179 stars
23 watching
33 forks
Language: PowerShell
last commit: about 1 year ago
amcachebamdfireventlogeventsforensicjumplistkeyword-listskeywordsmediaplayer-librarynotificationsobjectidsticky-notestimelinewdiwin10win11windowsxmlyourphone

Related projects:

Repository Description Stars
securityjoes/forensicminer Automates evidence collection and analysis from Windows machines using PowerShell. 149
gfoss/psrecon Automates data collection and forensic analysis from remote Windows hosts using PowerShell 479
swisscom/invoke-forensics Tools for automating forensic analysis with KAPE and RegRipper 109
evild3ad/memprocfs-analyzer Automated tool for forensic analysis of Windows memory dumps 555
anssi-fr/dfir4vsphere A PowerShell module for collecting logs and forensics data from VMware vSphere environments. 143
sadprocessor/somestuff A collection of PowerShell scripts and utilities 280
bplasmeijer/sitecore-symposium-2020-containers-aks A PowerShell-based script to deploy Sitecore 10 on AKS with external services like SQL, Solr, and Redis. 12
johnlatwc/pypowershellxray Decodes and analyzes encoded PowerShell scripts to identify potential shellcode and reverse-engineered APIs. 215
vexx32/pskoans An interactive way to learn PowerShell through Pester unit testing and kōans. 1,727
invoke-ir/powerforensics A C#-based framework for analyzing and investigating hard drive forensic data 1,389
dissectmalware/officeforensictools A Python-based collection of tools for gathering forensic information from Office documents 26
tonyphipps/meerkat A collection of PowerShell modules for gathering and analyzing Windows-based endpoint artifacts. 436
k-sec-tools/yarafilecheckerlib A YARA-based library to analyze files and archives for potential maliciousness 2
kasperskylab/klara Helps Threat Intelligence researchers hunt for new malware by efficiently scanning large collections of files with Yara rules 698
sentinelabs/sentinellabs_revcore_tools A suite of PowerShell scripts and tools for reverse engineering Windows malware analysis. 90