prefetch-tool


Script to extract information from windows prefetch folder

Script to extract information from windows prefetch folder (forensics use)

Version 1.1 - Added MD5/SHA1 hash function

Version 1.2 - Added function to list top x accessed executables and more websites to perform lookup on executable names

Version 1.4 - Added speed optimization and multicores support (reduced from 3.8mb to 2.2mb for executable)

Website: http://milo2012.wordpress.com

Twitter: http://twitter.com/keith55

Email: keith.lee2012 at gmail.com

Project Information

Labels:
prefetch forensics