NTFS-Linker is a tool developed by Stroz Friedberg for parsing NTFS journal files, $Logfile, and $MFT from a directory of input or a disk image, automatically extracting relevant NTFS files and organizing them into a structured output directory.
Common questions about NTFS-Linker including features, pricing, alternatives, and user reviews.
NTFS-Linker is Tool for parsing NTFS journal files, $Logfile, and $MFT. It is a Security Operations solution designed to help security teams with File Analysis, NTFS, Disk Image.
NTFS-Linker is a free Security Operations tool. This makes it accessible for organizations of all sizes, from startups to enterprises. Visit https://strozfriedberg.github.io/ntfs-linker/ for download and installation instructions.
Popular alternatives to NTFS-Linker include:
Compare these tools and more at https://cybersectools.com/categories/security-operations
NTFS-Linker is for security teams and organizations that need File Analysis, NTFS, Disk Image, MFT. It's particularly suitable for small to medium-sized teams looking for cost-effective solutions. Other Security Operations tools can be found at https://cybersectools.com/categories/security-operations
Recreates the File/Directory tree structure from an extracted $MFT file with detailed record mapping and analysis capabilities.
A command-line utility and Python package for mounting and unmounting various disk image formats with support for different volume systems and filesystems.
Review of various MFT parsers used in digital forensics for analyzing NTFS file systems.
Malware scanning tool for DFIR using 40+ engines from ReversingLabs