
Forensic Analysis for Mobile Apps (FAMA) -- module for the Autopsy Forensic Browser
Android extraction and analysis framework with an integrated Autopsy Module. Dump easily user data from a device and generate powerful reports for Autopsy or external applications.


The script can be used directly in terminal or as Autopsy module.
usage: start.py [-h] [-d DUMP [DUMP ...]] [-p PATH] [-o OUTPUT] [-a] app
Forensics Artefacts Analyzer
positional arguments:
app Application or package to be analyzed <tiktok> or <com.zhiliaoapp.musically>
optional arguments:
-h, --help show this help message and exit
-d DUMP [DUMP ...], --dump DUMP [DUMP ...] Analyze specific(s) dump(s) <20200307_215555 ...>
-p PATH, --path PATH Dump app data in path (mount or folder structure)
-o OUTPUT, --output OUTPUT Report output path folder
-a, --adb Dump app data directly from device with ADB
-H, --html Generate HTML report
python_modules folder.Do you need a forensics module for a specific Android application? Follow the instructions here and build a module by yourself.
Project developed as final project for Computer Engineering course in Escola Superior de Tecnologia e Gestão de Leiria.
This project is licensed under the terms of the GNU GPL v3 License.