ArtifactExtractor
Artifact extractor
Extracts Windows artifacts from images and virtual machines
Extract common Windows artifacts from source images and VSCs
66 stars
7 watching
12 forks
Language: Python
last commit: over 4 years ago
Linked from 1 awesome list
dfirforensicswin4n6
Related projects:
| Repository | Description | Stars |
|---|---|---|
| | A tool to extract forensic artifacts from various operating systems | 271 |
| | A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. | 184 |
| | A tool for collecting and analyzing Windows system artefacts on live systems | 507 |
| | A collection of scripts to analyze and process macOS forensic artifacts. | 182 |
| | A repository of machine-readable digital forensic artifacts in YAML format, validated by Python code. | 1,071 |
| | A centralized collection of forensics artifacts locations for Mac OS X and iOS. | 326 |
| | A tool for collecting forensic artifacts from live hosts across multiple operating systems. | 160 |
| | Extracts and organizes Indicators of Compromise from unstructured text files into structured formats. | 135 |
| | Tool for collecting artifacts from *nix systems during incident response | 195 |
| | A tool to extract and deobfuscate IOCs from text corpora, allowing analysts to work with previously inaccessible data | 513 |
| | A Python-based collection of tools for gathering forensic information from Office documents | 26 |
| | Creates artificial artifacts to evade malware detection and analysis | 252 |
| | A tool designed to extract and analyze data from Windows registry files | 562 |
| | Analyze Windows machine RAM artifacts using Winpmem and Volatility | 218 |
| | An Elixir library for interacting with the SiftScience API to analyze transactions and user behavior | 13 |