MemProcFS-Analyzer-v0.7
Added: User Interface
Added: Pagefile Support
Added: Zircolite - A standalone SIGMA-based detection tool for EVTX
Added: Event Log Overview
Added: Processes w/ Unusual User Context
Added: Process Tree: Properties View
Added: Searching for Cobalt Strike Beacons Configuration(s) w/ 1768.py (needs to be installed manually, disabled by default)
Added: Simple Prefetch View (based on Forensic Timeline)
Fixed: Other minor fixes and improvements