01Timestomping detection and chronological timeline generation for forensic investigations
024,121 GitHub stars
03Automated artifact triage collection and processing via KAPE orchestration
04Windows Registry and Event Log deep-dive parsing with RECmd and EvtxECmd
05Detailed NTFS file system analysis using MFTECmd for $MFT and USN Journal parsing
06Execution forensics through Prefetch (PECmd), LNK (LECmd), and Jump List (JLECmd) analysis