DIGITAL FORENSICS MODULE

Forensic Analysis.
Artifact to Root Cause.

Registry persistence lookup, malware behavior analysis, and structured forensic workflows built for incident response. H3AD-DF provides the tooling to go from raw artifact to documented root cause.

LIVE
h3ad@h3ad-df ~ bash
root@h3ad-df:~$status
H3AD-DFlive · 2 tools deployed
root@h3ad-df:~$ls tools/
REGSCOPE  MALBRIEF-AI
registry persistence · malware behavior analysis
root@h3ad-df:~$
REGSCOPE
LIVE
Registry Key Persistence Lookup · Instant ATT&CK Mapping
Look up any Windows registry key path and get persistence type, ATT&CK sub-technique, associated malware families, and a severity action badge. 85+ entries, stateless, fully offline.
85+ ENTRIES · PREFIX WALK MATCH · ATT&CK TAGGED · STATELESS
LAUNCH REGSCOPE →
MALBRIEF-AI
LIVE
Malware Classification · MITRE Mapping · Detection Signatures
Submit behavioral indicators to an AI analyst and get malware classification, MITRE ATT&CK technique mapping, detection signatures, and hunting pivot recommendations.
MALWARE CLASSIFICATION · MITRE TECHNIQUES · DETECTION SIGNATURES · HUNTING PIVOTS
LAUNCH MALBRIEF-AI →
VISITORS