dfirtriage

Windows forensic tool

A digital forensic tool designed to gather and analyze data from Windows-based systems in incident response scenarios.

Digital forensic acquisition tool for Windows based incident response.

GitHub

335 stars
27 watching
50 forks
Language: Python
last commit: over 2 years ago

Related projects:

RepositoryDescriptionStars
idiom/pftriageTool to analyze files during malware analysis and triage by extracting properties and detecting malicious indicators.77
dissectmalware/officeforensictoolsA Python-based collection of tools for gathering forensic information from Office documents26
flo354/iosforensicA tool to aid in forensic analysis of iOS devices63
anssi-fr/dfir4vsphereA PowerShell module for collecting logs and forensics data from VMware vSphere environments.143
diogo-fernan/ir-rescueA tool for comprehensively collecting host forensic data during incident response and analysis.466
ydkhatri/mac_aptA digital forensics tool for analyzing macOS and iOS systems790
arxsys/dffA framework for automating digital forensic analysis and incident response276
jfarley248/meatA toolkit for acquiring and analyzing evidence from iOS devices140
pjrinaldi/wombatforensicsA multi-threaded GUI forensic analysis tool for Linux48
msuhanov/dfir_ntfsA digital forensics tool for parsing and analyzing NTFS/FAT file systems.196
sekoialab/fastir_collectorA tool for collecting and analyzing Windows system artefacts on live systems507
dfir-iris/iris-webA collaborative platform for incident responders to share technical details during investigations1,091
opensourcesec/cirtkitA comprehensive toolset for digital forensics and incident response analysis using Python142
dfirtrack/dfirtrackA web-based application for tracking and managing incident response efforts in large-scale digital forensic investigations.482
codeyourweb/fastfinderTools for detecting suspicious files and directories on Windows and Linux endpoints.234