NTFS-Linker Logo

NTFS-Linker

0
Free
Visit Website

NTFS-Linker is a tool developed by Stroz Friedberg for parsing NTFS journal files, $Logfile, and $MFT from a directory of input or a disk image, automatically extracting relevant NTFS files and organizing them into a structured output directory.

FEATURES

ALTERNATIVES

Tool for analyzing Windows Recycle Bin INFO2 file

Dissect is a digital forensics & incident response framework that simplifies the analysis of forensic artefacts from various disk and file formats.

Hoarder is a tool to collect and parse windows artifacts.

iOSForensic is a Python tool for forensic analysis on iOS devices, extracting files, logs, SQLite3 databases, and .plist files into XML.

A console program for file recovery through data carving.

A community-sourced repository of digital forensic artifacts in YAML format.

MalConfScan is a Volatility plugin for extracting configuration data of known malware and analyzing memory images.

Recover event log entries from an image by heuristically looking for record structures.