Incident Response Triage is a scripted collection tool that automatically runs as an administrator in Windows versions, except WinXP, to gather system information valuable to a Forensic Analyst. It collects system information, network information, registry hives, disk information, and dumps memory, providing fast forensics in situations where a full disk image is not feasible.
Common questions about IRTriage including features, pricing, alternatives, and user reviews.
IRTriage is Automated collection tool for incident response triage in Windows systems. It is a Security Operations solution designed to help security teams with Windows, Memory Forensics.
A comprehensive incident response tool for Windows computers, providing advanced memory forensics and access to locked systems.
A process scanning tool that detects and dumps malicious implants, shellcodes, hooks, and memory patches in running processes.
Recovers/removes passwords and restrictions from encrypted PDF files.
Password recovery tool for MS Office, WordPerfect, Lotus & other office docs.