CybersecTools API access is now live!Learn More
ArtifactExtractor Logo

ArtifactExtractor

A script for extracting common Windows artifacts from source images and VSCs with detailed dependencies and usage instructions.

65
Visit website
Compare
Compare
0
APIBuild market maps, track competitors, monitor vendorsRequest API Access

ArtifactExtractor Description

ArtifactExtractor is a script that extracts common Windows artifacts from source images and VSCs. Artifacts in VSCs will be checked (via hash) if they are different from a later VSC/image copy before extraction. Dependencies: - None if using release executable on Windows. - Else: Install backports.lzma - Windows: Use latest wheel file available from [here] - Linux: Use a package manager, e.g. sudo apt install liblzma-dev - Install libewf libewf-legacy should be installed rather than libewf (experimental) - Newer experimental releases have a file corruption issue. - Windows: Use the MSI installer available from [here] - Linux: Use libewf-legacy build 20140806 (Windows ONLY) - Install pywin32: pip install pywin32 - Install remaining requirements: use requirements.txt - Use pip: pip install -r requirements.txt Usage: Create destination directory artifact_extractor.exe <source image> <dest dir> [-a <selected artifacts>] or artifact_extractor.exe -h for more options Credits: Joachim Metz and his libraries, John Corcoran for Unix Compatibility

ArtifactExtractor FAQ

Common questions about ArtifactExtractor including features, pricing, alternatives, and user reviews.

ArtifactExtractor is A script for extracting common Windows artifacts from source images and VSCs with detailed dependencies and usage instructions.. It is a Security Operations solution designed to help security teams with Open Source, File Analysis.

Have more questions? Browse our categories or search for specific tools.

ALTERNATIVES

HexPrism Logo

HexPrism is a fast, privacy-first hex editor built for CTFs and digital forensics.

0
libsmraw Logo

A library to access and manipulate RAW image files.

0
cabextract Logo

Free software for extracting Microsoft cabinet files, supporting all features and formats of Microsoft cabinet files and Windows CE installation files.

0
libolecf Logo

A library for accessing and parsing OLE 2 Compound File (OLECF) format files, including Microsoft Office documents and thumbs.db files.

0
wxHexEditor Logo

wxHexEditor is a free cross-platform hex editor and disk editor for editing binary files, disk devices, and logical drives with data manipulation and checksum calculation features.

0

Stay Updated with Mandos Brief

Get strategic cybersecurity insights in your inbox