williballenthin/Autopsy-WindowsRegistryIngestModule
no longer maintained
Discovered public repositories for williballenthin in the GitHub catalog.
no longer maintained
no longer maintained
EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.
Registry viewer written in pure Java using Rejistry
Pure Java parser for Windows Registry hive files.
Virustotal API for Go
A theme for Octopress
Pure Python parser for Windows Event Log files (.evtx)
Source for my personal website
Recover event log entries from an image by heurisitically looking for record structures.
Local configuration files for various Linux tools
The Sleuth Kit (TSK) is a library and collection of command line tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.
Cross-platform, open-source shellbag parser
An Emacs minor mode for log analysis.
Tool suite for inspecting NTFS artifacts.
Pure Python parser for Windows Registry hives.