9 results found Sort:

Forensics tool for NTFS (parser, mft, bitlocker, deleted files)
Created 2020-02-28
332 commits to master branch, last one about a year ago
analyzeMFT.py is designed to fully parse the MFT file from an NTFS filesystem and present the results as accurately as possible in multiple formats.
Created 2012-08-12
415 commits to master branch, last one 2 months ago
$MFT directory tree reconstruction & FILE record info
Created 2020-12-26
161 commits to master branch, last one 10 months ago
Parses $MFT from NTFS file systems
Created 2018-06-07
206 commits to master branch, last one 19 days ago
A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV. Threats and data can be probed harnessing the power...
Created 2019-03-28
229 commits to master branch, last one 9 months ago
18
72
gpl-3.0
5
A full & Open Source compatible Petya Ransomware Executable Placeholder
Created 2022-02-28
13 commits to master branch, last one 6 months ago
Ultra Fast File Search
Created 2020-05-15
2 commits to main branch, last one about a year ago
Carve file metadata from NTFS index ($I30) attributes
Created 2021-05-16
171 commits to main branch, last one 10 months ago
9
41
mit
5
NTFS Master File Table (MFT) parser for Go.
Created 2020-02-11
74 commits to master branch, last one 4 months ago