Win10

Win10 research suite

A PowerShell script collection focused on Windows 10/11 forensic analysis and research tools.

Win 10/11 related research

GitHub

178 stars
22 watching
33 forks
Language: PowerShell
last commit: 11 months ago
amcachebamdfireventlogeventsforensicjumplistkeyword-listskeywordsmediaplayer-librarynotificationsobjectidsticky-notestimelinewdiwin10win11windowsxmlyourphone

Related projects:

Repository Description Stars
securityjoes/forensicminer Automates evidence collection and analysis from Windows machines using PowerShell. 148
gfoss/psrecon Automates data collection and forensic analysis from remote Windows hosts using PowerShell 479
swisscom/invoke-forensics Tools for automating forensic analysis with KAPE and RegRipper 109
evild3ad/memprocfs-analyzer Automated forensic analysis tool for Windows memory dumps 540
anssi-fr/dfir4vsphere A PowerShell module for collecting logs and forensics data from VMware vSphere environments. 140
sadprocessor/somestuff A collection of PowerShell scripts and utilities 280
bplasmeijer/sitecore-symposium-2020-containers-aks A PowerShell-based script to deploy Sitecore 10 on AKS with external services like SQL, Solr, and Redis. 12
johnlatwc/pypowershellxray Decodes and analyzes encoded PowerShell scripts to identify potential shellcode and reverse-engineered APIs. 215
vexx32/pskoans An interactive way to learn PowerShell through Pester unit testing and kōans. 1,722
invoke-ir/powerforensics A C#-based framework for analyzing and investigating hard drive forensic data 1,385
dissectmalware/officeforensictools A Python-based collection of tools for gathering forensic information from Office documents 26
tonyphipps/meerkat A collection of PowerShell modules for gathering and analyzing Windows-based endpoint artifacts. 435
k-sec-tools/yarafilecheckerlib A YARA-based library to analyze files and archives for potential maliciousness 2
kasperskylab/klara Helps Threat Intelligence researchers hunt for new malware by efficiently scanning large collections of files with Yara rules 697
sentinelabs/sentinellabs_revcore_tools A suite of PowerShell scripts and tools for reverse engineering Windows malware analysis. 89