Quote:
Below are various tools that cover a wide range of Windows digital computer forensic analysis.
Artifact Analysis
•Windows Prefetch Parser
•Windows 'index.dat' Parser
•Windows LNK Parsing Utility
•Windows USB Storage (USBSTOR) Parser
Registry and Event Log Analysis
•Yet Another Registry Utility (yaru)
•Windows Event Log Viewer
•Windows ShellBag Parser
NTFS Filesystem Analysis
•Windows Journal Parser (for NTFS change logs)
•NTFS Directory Enumerator
•NTFS File Copy Utility
•Windows NTFS Metadata Extractor Utility
Network Support Utilities
•DNS Query Utility
•Packet Capture (pcap) ICMP Carver
•Network Xfer Client/Server Utility
Portable Executable Utilities
•Windows Portable Executable (PE) Viewer
•Portable Executable (PE) Scanner
Miscellaneous Tools
•Windows Symbol Fetch Utility
Info @
http://tzworks.net/prototypes.phpDownload @
http://tzworks.net/download_links.php