RSS 6 projects tagged "Forensics"

Download Website Updated 20 Jun 2011 GrokEVT

Screenshot
Pop 118.49
Vit 6.08

GrokEVT is a collection of scripts built for reading Windows® NT/2K/XP/2K3 event log files. The scripts work together on one or more mounted Windows partitions to extract all information needed (registry entries, message templates, and log files) to convert the logs to a human-readable format.

Download Website Updated 23 May 2008 msn-proxy

Screenshot
Pop 91.78
Vit 1.51

The msn-proxy is a lightweight transparent proxy for MSN Messenger clients. It allows you to control and monitor the use of Messenger on your network.

Download Website Updated 25 Oct 2007 TFTPgrab

Screenshot
Pop 19.65
Vit 1.00

TFTPgrab is a TFTP (Trivial File Transfer Protocol) stream extractor that reads from tcpdump/libpcap capture files. It attempts to reconstruct data that has been transferred via TFTP, and may be useful in some network forensics situations.

Download Website Updated 19 Mar 2009 dc3dd

Screenshot
Pop 83.71
Vit 1.82

dc3dd is a patched version of GNU dd to include a number of features useful for computer forensics.

Download No website Updated 01 Mar 2013 Digital Forensics Framework

Screenshot
Pop 249.46
Vit 9.91

DFF (Digital Forensics Framework) is a simple but powerful tool with a flexible module system which will help you in your digital forensics works, including file recovery due to error or crash, evidence research and analysis, etc. DFF provides a robust architecture and some handy modules.

No download No website Updated 24 Nov 2010 CarvFS

Screenshot
Pop 54.80
Vit 1.97

CarvFS is a user space FUSE filesystem aimed at computer forensic tools that process disk and/or memory dump images or other large data files. The filesystem allows CarvPath-aware tools to use CarvPath annotations as a way to designate partitions, files, alternate streams, processes etc. within a disk or memory image as a string, making them available trough the filesystem as a pseudo file that can be handed to other tools. This removes the need to copy the information out of the disk image and reduces storage requirements.

Screenshot

Project Spotlight

Oliver's Parser Framework

A PHP 5 framework designed with simplicity and size in mind.

Screenshot

Project Spotlight

Sanewall

A powerful and easy-to-use firewall builder for Linux which uses an elegant language.