← Back to catalog
DFF
by ArxSys
DFF by ArxSys. A digital forensics tool for forensic tool suite (windows investigations), email parsing, software write block, windows registry analysis, hash analysis, deleted file recovery, memory capture and analysis, string search, file carving.
Platforms
Windows
Artifact types
Disk ImageEmailEvent Logs (EVTX)File SystemMemory DumpPrefetch FilesWindows Registry
License
Open SourceSkill level
BeginnerVersion
1.3Website
http://www.arxsys.frUse cases
data recoverye discoveryincident responselitigation supportmalware analysis
Techniques
artifact parsingcarvingmalware triagememory analysispost mortem