
ir-rescue
A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.
digital-forensicsdisk-forensicsforensics+6
488

A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.

This repository contains a IDA Python script to recover PrideLocker ESX encryptor strings and a YARA rule