ArtifactExtractor
Artifact extractor
Extracts Windows artifacts from images and virtual machines
Extract common Windows artifacts from source images and VSCs
66 stars
7 watching
12 forks
Language: Python
last commit: almost 4 years ago
Linked from 1 awesome list
dfirforensicswin4n6
Related projects:
Repository | Description | Stars |
---|---|---|
| A tool to extract forensic artifacts from various operating systems | 271 |
| A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. | 184 |
| A tool for collecting and analyzing Windows system artefacts on live systems | 507 |
| A collection of scripts to analyze and process macOS forensic artifacts. | 182 |
| A repository of machine-readable digital forensic artifacts in YAML format, validated by Python code. | 1,071 |
| A centralized collection of forensics artifacts locations for Mac OS X and iOS. | 326 |
| A tool for collecting forensic artifacts from live hosts across multiple operating systems. | 160 |
| Extracts and organizes Indicators of Compromise from unstructured text files into structured formats. | 135 |
| Tool for collecting artifacts from *nix systems during incident response | 195 |
| A tool to extract and deobfuscate IOCs from text corpora, allowing analysts to work with previously inaccessible data | 513 |
| A Python-based collection of tools for gathering forensic information from Office documents | 26 |
| Creates artificial artifacts to evade malware detection and analysis | 252 |
| A tool designed to extract and analyze data from Windows registry files | 562 |
| Analyze Windows machine RAM artifacts using Winpmem and Volatility | 218 |
| An Elixir library for interacting with the SiftScience API to analyze transactions and user behavior | 13 |