ArtifactExtractor
Artifact extractor
Extracts Windows artifacts from images and virtual machines
Extract common Windows artifacts from source images and VSCs
66 stars
7 watching
12 forks
Language: Python
last commit: over 5 years agoLinked from 1 awesome list
dfirforensicswin4n6
Related projects:
| Repository | Description | Stars |
|---|---|---|
| A tool to extract forensic artifacts from various operating systems | 271 | |
| A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. | 184 | |
| A tool for collecting and analyzing Windows system artefacts on live systems | 507 | |
| A collection of scripts to analyze and process macOS forensic artifacts. | 182 | |
| A repository of machine-readable digital forensic artifacts in YAML format, validated by Python code. | 1,071 | |
| A centralized collection of forensics artifacts locations for Mac OS X and iOS. | 326 | |
| A tool for collecting forensic artifacts from live hosts across multiple operating systems. | 160 | |
| Extracts and organizes Indicators of Compromise from unstructured text files into structured formats. | 135 | |
| Tool for collecting artifacts from *nix systems during incident response | 195 | |
| A tool to extract and deobfuscate IOCs from text corpora, allowing analysts to work with previously inaccessible data | 513 | |
| A Python-based collection of tools for gathering forensic information from Office documents | 26 | |
| Creates artificial artifacts to evade malware detection and analysis | 252 | |
| A tool designed to extract and analyze data from Windows registry files | 562 | |
| Analyze Windows machine RAM artifacts using Winpmem and Volatility | 218 | |
| An Elixir library for interacting with the SiftScience API to analyze transactions and user behavior | 13 |