Live Windows forensic triage tool that rapidly detects anti-forensics, suspicious execution, and post-compromise activity.
prefetch forensics dfir malware-analysis bam triage forensic-analysis anti-forensics memory-forensics mft malware-detection blue-team windows-forensics forensics-tools dfir-tools usn-journal
-
Updated
Apr 12, 2026 - Python