PowerForensics Logo

PowerForensics

0
Free
Visit Website

PowerForensics is a PowerShell digital forensics framework for hard drive forensic analysis, supporting NTFS and FAT file systems, with plans for HFS+ and Extended File System support. It provides a public API for forensic tasks, built on a C# Class Library, allowing for modular expansion of capabilities. Documentation and installation instructions can be found on Read The Docs and GitHub.

FEATURES

ALTERNATIVES

DFIR ORC Documentation provides detailed instructions for setting up the build environment and deploying the tool.

A comprehensive incident response tool for Windows computers, providing advanced memory forensics and access to locked systems.

AMExtractor is an Android Memory Extractor tool.

A powerful OSINT tool for creating custom templates for data extraction and analysis

A free, open source collection of tools for forensic artifact and image analysis.

A modified version of GNU dd with added features like hashing and fast disk wiping.

A binary analysis platform for analyzing binary programs

A Python tool for in-depth PDF analysis and modification.