Skip to content
View Luke4N6's full-sized avatar

Block or report Luke4N6

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
6 stars written in PowerShell
Clear filter

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines. Official Twitter/X account @PersistSniper. Made w…

PowerShell 1,963 194 Updated Dec 11, 2024

$MFT directory tree reconstruction & FILE record info

PowerShell 297 33 Updated Oct 7, 2024

An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.

PowerShell 277 51 Updated Aug 23, 2024

Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR

PowerShell 224 29 Updated Feb 18, 2025

SQLite queries

PowerShell 78 11 Updated Mar 8, 2023

PowerShell script utilized to pull several forensic artifacts from a live Win7 and WinXP system without WINRM.

PowerShell 50 10 Updated Jan 25, 2018