Avilla Forensics 3.0
-
Updated
Jan 31, 2025 - C#
Avilla Forensics 3.0
inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extract processes, hypervisors (including nested) in memory dumps using microarchitechture independent Virtual Machiene Introspection techniques
Windows Forensics Environment Builder
A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV. Threats and data can be probed harnessing the power and syntax of SQL.
Examine, create and interact with remote objects in other .NET processes.
Forensic tool for acquisition, triage and analysis of remote block devices via iSCSI protocol.
A post-exploitation tool to decrypt SolarPutty's sessions files
CDIR Analyzer - parsers for data collected by CDIR Collector
Extract SysCfg data from corrupted or unreadable NAND dumps.
An updated C# port of X-Ways X-Tensions API.
Data forensic tool
File recovery tool for the FAT file system
Blue team security tool to help detect physical attacks using USB devices.
C# Library and research notes for Windows 11 Notepad State Files
A simple tool to create a Memory Dump from a running VirtualBox instance.
Windows anti-forensics made easy
An updated fork of @bacanoicua's RAMDumpExplorer project. This is a program designed to analyze a dump of the RAM memory to search for potentially malicious files. The program scans the dump file for specific patterns and uses regular expressions to identify and extract the matched values
A tool that reads data stored under USBSTOR key in the system registry hive, representing information about connected USB storage devices
Monitors the network bandwidth of all processes. Has the option to record the data only if the mobile connection is active. Uses windows event tracing.
Add a description, image, and links to the forensics topic page so that developers can more easily learn about it.
To associate your repository with the forensics topic, visit your repo's landing page and select "manage topics."