Code Monkey home page Code Monkey logo

win-for's Introduction

Win-FOR

Windows Forensics (Win-FOR) Customizer

GitHub release (with filter)

The design behind this is to use a barebones Windows 10 VM or a Windows machine (preferably 1909 and higher to support WSLv2). Once configured, and activated (to support customization features), then you can use one of the installers to install all of the packages.

The installer is a graphical interface to click and choose which items you want, and to enter the settings you need

Check out the Releases section for the most up-to-date installers.

Win-FOR Customizer

FIRST OFF - Requires .NET 6.0 Desktop Runtime If you do not have it, you will be prompted to install at execution

Why a GUI? Who doesn't like a good GUI!? Not everyone enjoys Windows command line or PowerShell, especially when just starting out in Digital Forensics. This makes it much easier to get your environment set up without having to worry about CMD or PS!

The customizer tool gives you the following features:

  • Point and click to choose which tools you want installed in your distro (instead of just choosing them all)
  • Checkboxes to choose if you want the WSLv2 with SIFT and REMnux installed during the process, or click WSL Only to install it at a later date
  • Save your current selections in a custom SaltStack State file for your own purposes or record
  • Identify the current version of the Win-FOR environment with a single click
  • Check for updates to the Customizer
  • Graphically enter any settings you need!

screenshot-v8 4 0

screenshot-options-v8 4 0

PowerShell or CLI

The PowerShell script and standalone CLI executable have been deprecated in favour of the Win-FOR Customizer.
However, if there is need for a command-line version of the Customizer, it can be done. Until such time, the Customizer is your best choice!

Issues

All issues should be raised here

win-for's People

Contributors

digitalsleuth avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar

win-for's Issues

Program Addition

Can you add the Microsoft Store tool into the toolset: MSI Viewer

Hash mismatch errors on 8.30 in Windows 10 and Windows 11

Hi DigitalSleuth,
I have been using win-for 8.30 release with success, but today when trying to install it on Win10 or Win11 VirtualBox VM it is having a hash mismatch with the win-for-salt-v2023.26.2.zip - pic attached.
Is there anything I can do to fix this?
Thanks
Robert
SCR-20231003-oks

WSL - Sift / Remnux

I am not sure why, but the install for WSL Sift and RemNux was giving me issues.

to fix it, I manually installed cast and installed Sift and RemNux through their new system.

wet https://github.com/ekristen/cast/releases/download/v0.14.0/cast_v0.14.0_linux_amd64.deb
sudo dpkg -i cast_v0.14.0_linux_amd64.deb
sudo cast install teamdfir/sift-saltstack
sudo cast install remnux/salt-states

Suggestion

I suggest relocating the X-Ways Checkbox to be next to the user data to quickly enable/disable. This would allow users who want everything except X-Ways to more easily identify the checkbox under a subcategory since having it enabled requires user data.

X-Ways

Second suggestion would be to include Everything from Voidtools as this tool can benefit in finding tools or files locally while also doubling other purposes like malware analysis or regex/wildcard file searches on mounted drives.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.