Recover event log entries from an image by heurisitically looking for record structures.
Statistics for this project are still being loaded, please check back later.
Simplistic but cross-platform version of Everything
volatility explorer
Pure Python parser for classic Windows Event Log files (.evt)
Volatility Plugins
linuxprivchecker.py -- a Linux Privilege Escalation Check Script
xLEAPP - Merging of iLEAPP/RLEAPP/vLEAPP, ALEAPP, cLEAPP
Interactively find and recover deleted or overwritten files from your terminal
Pure Python parser for Windows Event Log files (.evtx)
An advanced memory forensics framework
Query and report user logons relations from MS Windows Security Events
Windows passwords decryption from dump files
Monitoring Registry and File Changes in Windows
Digital Forensic Framework, a powerfull, efficient and modular digital forensic tool
Reconstruct process trees from event logs
EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including u...