Sign up for your own profile on GitHub, the best place to host code, manage projects, and build software alongside 50 million developers.
Hide content and notifications from this user.
Learn more about blocking users
Contact Support about this user’s behavior.
Learn more about reporting abuse
Application for viewing/searching large text/log files (WPF port of the original LogViewer)
Emulates the Sysinternals Autoruns tool, but for DFIR purposes e.g. multi user processing
volatility-runner is a command line application designed to speed up memory forensics using the volatility framework, primarily for instances where the user has multiple memory dumps to analyse.
SessionViewer is a PCAP TCP session reconstructor with a UI to view the data flows, and export data
Looks stuff up (MD5, SHA256, IP, Domains, URL's, strings e.g. mutexes)...
Parses the WMI object database....looking for persistence
Seeing something unexpected? Take a look at the
GitHub profile guide.