Vortex MFT Plus UI - NTFS Artifact Parsing and Anomaly Detection
SHA256 Hash
92c768429f5f5b03d0f13672424cceeff0f7abb198fc3e49ecfc17de2f1286df

Vortex MFT

NTFS Forensic Parser


NTFS forensic parser for raw physical disk analysis. Extracts $MFT, $UsnJrnl, $Logfile, and $I30 with built-in anomaly detection for hidden threats.

  • Raw Physical Access to NTFS structures
  • Automated Triage: 27 unique anomaly rules
  • Full USN Journal and Transaction decoding