Collect-MemoryDump
Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR (by evild3ad)
MemProcFS-Analyzer
MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR (by evild3ad)
Collect-MemoryDump | MemProcFS-Analyzer | |
---|---|---|
2 | 2 | |
211 | 402 | |
- | - | |
4.5 | 6.1 | |
2 months ago | 2 months ago | |
PowerShell | PowerShell | |
GNU General Public License v3.0 only | GNU General Public License v3.0 only |
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Collect-MemoryDump
Posts with mentions or reviews of Collect-MemoryDump.
We have used some of these posts to build our list of alternatives
and similar projects.
MemProcFS-Analyzer
Posts with mentions or reviews of MemProcFS-Analyzer.
We have used some of these posts to build our list of alternatives
and similar projects. The last one was on 2022-02-22.
-
MemProcFS - This Changes Everything
I’ve been using this for a bit now and love it! Also please check the work done by evil3ad with MemProcFS-Analyzer. https://github.com/evild3ad/MemProcFS-Analyzer
- Volatility 3 commands and usage tips to get started with memory forensics. Volatility 3 + plugins make it easy to do advanced memory analysis.
What are some alternatives?
When comparing Collect-MemoryDump and MemProcFS-Analyzer you can also consider the following projects:
MemLabs - Educational, CTF-styled labs for individuals interested in Memory Forensics
community - Volatility plugins developed and maintained by the community
Kuiper - Digital Forensics Investigation Platform
Cortex - Cortex: a Powerful Observable Analysis and Active Response Engine
Trawler - PowerShell script to help Incident Responders discover potential adversary persistence mechanisms.
Live-Forensicator - Powershell Script to aid Incidence Response and Live Forensics | Bash Script for MacOS Live Forensics and Incidence Response
community3 - Volatility3 plugins developed and maintained by the community