


This is the development tree. Production downloads are at:

Incident Response Forensic Framework

Live Windows forensic acquisition tool that collects system artefacts (registry, memory, disk, files) into CSV/JSON for early compromise detection…


Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.