
antispy
AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and…

AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and…

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

Extract Windows credentials directly from VM memory snapshots and virtual disks

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…

Turn any collection of documents into a knowledge graph. Extract entities and relationships via LLM, deduplicate with your approval. Map domains,…

Windows passwords decryption from dump files

Parses Apple Unified Logs to extract process, thread, activity, timestamp, and message metadata from logarchives or live macOS systems into JSONL/CSV…

analyzeMFT.py is designed to fully parse the MFT file from an NTFS filesystem and present the results as accurately as possible in multiple formats.

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Extract Windows Defender database from vdm files and unpack it

A high-speed forensic timeline engine for Windows forensic artifact CSV output built for DFIR investigators. Quickly consolidate CSV output from…

Extract WhatsApp private key from any non-rooted Android device (Android 7+ supported)

A database of RAT collected from Internet

Enumerate various traits from Windows processes as an aid to threat hunting

Bash script to extract data from a "chekcra1ned" iOS device

Automagically extract forensic timeline from volatile memory dump

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files