irFARTpull

(โ˜… 53)

PowerShell script utilized to pull several forensic artifacts from a live Win7 and WinXP system without WINRM.

  • irfartpull.ps1
  • README.md
// repository documentation