Hoarder

Artifact collector

A tool to collect and parse Windows artifacts from disk images or live machines.

This script is made to collect the most valiable artifacts for foreniscs or incident reponse investigation rather than imaging the whole har drive.

GitHub

193 stars
10 watching
19 forks
Language: Python
last commit: about 4 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
forensicanalysis/artifactcollector A tool to extract forensic artifacts from various operating systems 270
omenscan/achoir A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. 183
fox-it/acquire A tool to quickly gather forensic artifacts from disk images or live systems into a lightweight container. 91
pstirparo/mac4n6 A centralized collection of forensics artifacts locations for Mac OS X and iOS. 326
forensicartifacts/artifacts A repository of machine-readable digital forensic artifacts in YAML format, validated by Python code. 1,062
sekoialab/fastir_collector A tool for collecting and analyzing Windows system artefacts on live systems 506
ownsecurity/fastir_artifacts A tool for collecting forensic artifacts from live hosts across multiple operating systems. 160
abdulrhmanalfaifi/fennec Tool for collecting artifacts from *nix systems during incident response 192
silv3rhorn/artifactextractor Extracts Windows artifacts from images and virtual machines 65
gems-uff/noworkflow Automates the tracking of how data is produced and transformed in scientific experiments. 120
highmeh/lure A tool that automates the process of gathering email addresses from various sources for use in phishing or reconnaissance purposes. 158
hurricanelabs/machinae A tool for collecting security-related data from public sites and feeds. 504
psgumshoe/psgumshoe A Windows PowerShell module designed to collect OS and domain artifacts for forensic analysis and incident response. 251
op7ic/unix_collector A tool for collecting forensic data from various UNIX-like systems 32
invoke-ir/ace A suite of tools for automating data collection and enrichment across multiple operating systems. 322