gedankensplitter/windows_forensics.md
2022-11-15 15:02:49 +01:00

443 B

windows forensics

filesystem timeline

plaso

fileystem known data check

https://www.nist.gov/itl/ssd/software-quality-group/national-software-reference-library-nsrl/nsrl-download/current-rds

fragments

chrome parser

https://github.com/obsidianforensics/hindsightkali

malware runtime analysis