Category DFIR

VolUtility – Web Application for Volatility

Read More

Google Rapid Response – Build Process

Read More

Setting Up My Forensic Lab

Read More

EnScripts – GUI USNJrnl.enscript

Read More

EnScripts – USNJrnl.enscript

Read More

Timestamp Anomalies – $MFT

Read More

Timeline Creation – Part 2 (Super Timeline)

Read More

Timeline Creation – Part 1 (Filesystem Timeline)

Read More

Grep and icat

Read More

Chrome Cache – Where’s the stash (Part 2)

Read More