• Stars
    star
    2
  • Language
    Rust
  • Created over 1 year ago
  • Updated over 1 year ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

Tool that uses aws-snap-io and libtsk to extract EVTX files from an AWS snapshot.

More Repositories

1

PancakeViewer

A DFVFS Backed Forensic Viewer
Python
38
star
2

PyWindowsThingies

Windows Thingies in Python for live use.
Python
24
star
3

RsWindowsThingies

Windows Thingies... but in Rust
Rust
23
star
4

RustyUsn

USN to JSON
Rust
22
star
5

RustyLnk

LNK to JSON
Rust
14
star
6

RustyReg

Registry to JSON. This Project is for learning purposes and is not maintained.
Rust
12
star
7

libtsk-rs

Wrapper for TSK (Sleuth Kit) Bindings
Rust
11
star
8

RustyPrefetch

Prefetch to JSON. This Project is for learning purposes and is not maintained.
Rust
11
star
9

RustyMft

MFT to JSON
Rust
8
star
10

pyshellitems

Python library and tools for handling shell items / property lists and stores / and extension blocks. This project is for learning purposes and is not maintained.
Python
8
star
11

VanillaWindowsTools

Tools for parsing and playing with https://github.com/AndrewRathbun/VanillaWindowsReference data
Rust
7
star
12

r-winreg

Windows Registry Parsing Library
Rust
5
star
13

ActivitiesCacheParser

Parse Windows ActivitiesCache to JSONL. This project is for learning purposes and is not maintained.
Python
5
star
14

JsonlTools

Tools for filtering and manipulating JSONL
Rust
4
star
15

aws-snap-io

Library for implementing Read Seek ontop of an AWS Snapshot
Rust
4
star
16

MonitorUserAssist

Tool that can monitor the UserAssist registry keys and decode UserAssist structs in real-time. This project is for learning purposes and is not maintained.
Python
4
star
17

LogicalRegTool

A registry tool that can be ran on a logical volume. JSONL output for NoSQL. This project is for learning purposes and is not maintained.
Python
3
star
18

WinObjectIdParser

ObjectID Parsers and Tools. This project is for learning purposes and is not maintained.
Python
3
star
19

sans509-helpers

Just a quick script to parse load balancer logs into json
Python
3
star
20

PyRustyUsn

Python bindings for RustyUsn
Python
3
star
21

LogicalAvacado

A DFIR Tool for processing logical volumes and inserting records into ArangoDB. This project is for learning purposes and is not maintained.
Python
2
star
22

upcaseinfo-py

$UpCase:$Info parsing tool/lib in Python
Python
2
star
23

r-winstructs

Windows Structures in Rust. This Project is for learning purposes and is not maintained.
Rust
2
star
24

upcaseinfo-rs

$UpCase:$Info parsing tool/lib in Rust
Rust
2
star
25

LogicalJmpLnkTool

A jumplist and link tool that can be ran on a logical volume. JSONL output for NoSQL. This project is for learning purposes and is not maintained.
Python
2
star
26

r-pyfio

A way to pass a file-like IO object in python to Rust
Rust
1
star
27

SetupApiLogParser

Parse Setup API Logs to JSONL
Python
1
star
28

r-shellitems

Shell Item Structures in Rust
Rust
1
star